{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-47065",
        "tracking": {
            "current_release_date": "2026-09-16T14:13:06.506075Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-47065",
            "initial_release_date": "2026-06-03T10:38:53.256385Z",
            "revision_history": [
                {
                    "date": "2026-06-03T10:38:53.256385Z",
                    "number": "1",
                    "summary": "CVE created.| Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (3).| References created (1).| CWES updated (1)."
                },
                {
                    "date": "2026-06-03T10:38:59.176231Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-06-03T11:26:23.118101Z",
                    "number": "3",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (1).| CWES updated (1)."
                },
                {
                    "date": "2026-06-03T11:26:26.191649Z",
                    "number": "4",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-03T11:36:44.455089Z",
                    "number": "5",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-03T14:54:35.891138Z",
                    "number": "6",
                    "summary": "Unknown change."
                },
                {
                    "date": "2026-06-03T14:54:44.408527Z",
                    "number": "7",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-03T15:50:43.997929Z",
                    "number": "8",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-06-03T15:50:45.966759Z",
                    "number": "9",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-05T13:03:58.554417Z",
                    "number": "10",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (18).| Product Identifiers created (11).| References created (2)."
                },
                {
                    "date": "2026-06-05T13:04:06.573365Z",
                    "number": "11",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-06T00:46:07.241100Z",
                    "number": "12",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| Products connected (4)."
                },
                {
                    "date": "2026-06-06T00:46:08.769770Z",
                    "number": "13",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-12T17:02:49.033125Z",
                    "number": "14",
                    "summary": "Description removed for source.| Description created for source."
                },
                {
                    "date": "2026-06-15T15:56:21.044660Z",
                    "number": "15",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-06-15T15:56:22.495952Z",
                    "number": "16",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-19T00:57:03.315571Z",
                    "number": "17",
                    "summary": "Products removed (8)."
                },
                {
                    "date": "2026-06-19T00:57:12.112419Z",
                    "number": "18",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-23T16:37:10.559949Z",
                    "number": "19",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-06-23T16:37:15.622200Z",
                    "number": "20",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-06-24T06:52:07.259870Z",
                    "number": "21",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| Products connected (7).| References created (5)."
                },
                {
                    "date": "2026-06-24T08:46:27.021053Z",
                    "number": "22",
                    "summary": "Products connected (10).| Product Identifiers created (7).| Products removed (7)."
                },
                {
                    "date": "2026-06-30T19:27:50.251793Z",
                    "number": "23",
                    "summary": "Products created (3).| Product Identifiers created (3)."
                },
                {
                    "date": "2026-06-30T19:27:58.006667Z",
                    "number": "24",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-07-08T12:05:38.583934Z",
                    "number": "25",
                    "summary": "Source connected.| CVE status created. (valid)| Products connected (5).| References created (3)."
                },
                {
                    "date": "2026-07-08T12:05:46.937738Z",
                    "number": "26",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-07-08T13:22:53.038157Z",
                    "number": "27",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| References created (4).| CWES updated (1)."
                },
                {
                    "date": "2026-07-13T18:16:15.096171Z",
                    "number": "28",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (54).| Product Identifiers created (76).| Products created (25).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-07-13T18:16:28.859259Z",
                    "number": "29",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-07-14T18:47:44.167940Z",
                    "number": "30",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products created (3).| References created (3).| CWES updated (1)."
                },
                {
                    "date": "2026-07-14T18:47:45.896627Z",
                    "number": "31",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-07-20T17:54:11.630779Z",
                    "number": "32",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-07-20T17:54:13.856143Z",
                    "number": "33",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-08-12T06:12:34.782231Z",
                    "number": "34",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-08-13T12:15:13.619811Z",
                    "number": "35",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-08-26T15:27:06.338362Z",
                    "number": "36",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-08-26T15:27:15.815650Z",
                    "number": "37",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-08-27T00:55:15.087212Z",
                    "number": "38",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:55:19.634372Z",
                    "number": "39",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-08-27T00:55:54.493586Z",
                    "number": "40",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:56:12.770471Z",
                    "number": "41",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:56:37.902800Z",
                    "number": "42",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:57:05.197310Z",
                    "number": "43",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:57:24.077771Z",
                    "number": "44",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:57:43.450531Z",
                    "number": "45",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:58:12.129844Z",
                    "number": "46",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:58:37.287213Z",
                    "number": "47",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:59:04.294654Z",
                    "number": "48",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-08-27T00:59:29.973272Z",
                    "number": "49",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (3).| Product Remediations created (2).| Product Identifiers created (8).| Product Identifiers removed (8).| References created (37).| CWES updated (1)."
                },
                {
                    "date": "2026-09-01T23:05:37.450748Z",
                    "number": "50",
                    "summary": "Description removed for source.| Products removed (2)."
                },
                {
                    "date": "2026-09-01T23:05:39.017071Z",
                    "number": "51",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-02T05:17:18.329082Z",
                    "number": "52",
                    "summary": "Description created for source."
                },
                {
                    "date": "2026-09-02T10:31:02.955707Z",
                    "number": "53",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-03T00:19:39.536785Z",
                    "number": "54",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-03T14:20:51.361206Z",
                    "number": "55",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-03T18:44:58.082015Z",
                    "number": "56",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-04T15:29:26.804784Z",
                    "number": "57",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-05T04:42:07.542662Z",
                    "number": "58",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-05T15:28:31.936344Z",
                    "number": "59",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-06T15:29:03.956901Z",
                    "number": "60",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-07T15:29:57.406489Z",
                    "number": "61",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-09T07:23:38.082007Z",
                    "number": "62",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-09T07:23:39.591214Z",
                    "number": "63",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-09T15:35:43.904548Z",
                    "number": "64",
                    "summary": "EPSS updated."
                },
                {
                    "date": "2026-09-10T07:45:57.448252Z",
                    "number": "65",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-16T00:25:43.087922Z",
                    "number": "66",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (2).| Product Identifiers created (2).| Product Remediations created (2).| References created (2)."
                },
                {
                    "date": "2026-09-16T00:26:22.860951Z",
                    "number": "67",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-16T12:12:22.881090Z",
                    "number": "68",
                    "summary": "Source created.| CVE status created. (valid)| Products connected (6).| Product Identifiers created (8).| Products created (2).| References created (3)."
                },
                {
                    "date": "2026-09-16T12:12:27.417848Z",
                    "number": "69",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-09-16T13:50:51.157387Z",
                    "number": "70",
                    "summary": "Source connected.| CVE status created. (valid)"
                }
            ],
            "status": "interim",
            "version": "70"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/2.0.0|<2.0.29",
                                "product": {
                                    "name": "vers:semver/2.0.0|<2.0.29",
                                    "product_id": "CSAFPID-8024014"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/2.1.0|<2.1.13",
                                "product": {
                                    "name": "vers:semver/2.1.0|<2.1.13",
                                    "product_id": "CSAFPID-8024013"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:semver/2.2.0|<2.2.8",
                                "product": {
                                    "name": "vers:semver/2.2.0|<2.2.8",
                                    "product_id": "CSAFPID-8024012"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Apache MINA"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.29",
                                "product": {
                                    "name": "vers:unknown/2.0.29",
                                    "product_id": "CSAFPID-8518254",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:apache:mina:2.0.29:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.13",
                                "product": {
                                    "name": "vers:unknown/2.1.13",
                                    "product_id": "CSAFPID-8518255",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:apache:mina:2.1.13:*:*:*:*:*:*:*"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.8",
                                "product": {
                                    "name": "vers:unknown/2.2.8",
                                    "product_id": "CSAFPID-8518256",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:apache:mina:2.2.8:*:*:*:*:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Mina"
                    }
                ],
                "category": "vendor",
                "name": "Apache Software Foundation"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/12.2.1.19.0",
                                "product": {
                                    "name": "vers:unknown/12.2.1.19.0",
                                    "product_id": "CSAFPID-1549106",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:12.2.1.19.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/12.2.1.4.0",
                                "product": {
                                    "name": "vers:unknown/12.2.1.4.0",
                                    "product_id": "CSAFPID-1549107",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:12.2.1.4.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/14.1.1.0.0",
                                "product": {
                                    "name": "vers:unknown/14.1.1.0.0",
                                    "product_id": "CSAFPID-1549109",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:14.1.1.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/14.1.2.0.0",
                                "product": {
                                    "name": "vers:unknown/14.1.2.0.0",
                                    "product_id": "CSAFPID-1847010",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:14.1.2.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/14.1.2.1.0",
                                "product": {
                                    "name": "vers:unknown/14.1.2.1.0",
                                    "product_id": "CSAFPID-5129879",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:14.1.2.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/15.1.1.0.0",
                                "product": {
                                    "name": "vers:unknown/15.1.1.0.0",
                                    "product_id": "CSAFPID-5452508",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:15.1.1.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/3.0.0-3.2.20",
                                "product": {
                                    "name": "vers:unknown/3.0.0-3.2.20",
                                    "product_id": "CSAFPID-9329732",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:3.0.0-3.2.20"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/4.0.0-4.5.4",
                                "product": {
                                    "name": "vers:unknown/4.0.0-4.5.4",
                                    "product_id": "CSAFPID-9329733",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:oracle:fusion_middleware:4.0.0-4.5.4"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Fusion Middleware"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oracle/12.2.1.4.0",
                                        "product": {
                                            "name": "vers:oracle/12.2.1.4.0",
                                            "product_id": "CSAFPID-2699078",
                                            "product_identification_helper": {
                                                "cpe": "cpe:2.3:a:oracle:access_manager:12.2.1.4.0:*:*:*:*:*:*:*"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oracle/14.1.2.1.0",
                                        "product": {
                                            "name": "vers:oracle/14.1.2.1.0",
                                            "product_id": "CSAFPID-5450703",
                                            "product_identification_helper": {
                                                "cpe": "cpe:2.3:a:oracle:access_manager:14.1.2.1.0:*:*:*:*:*:*:*"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "Oracle Access Manager"
                            }
                        ],
                        "category": "product_family",
                        "name": "Oracle Fusion Middleware"
                    }
                ],
                "category": "vendor",
                "name": "Oracle"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1843537",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:ibm:infosphere_information_server:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "IBM InfoSphere Information Server"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1914402",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:ibm:tivoli_network_manager:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "IBM Tivoli Network Manager"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<v8.11.0.1 interim fix 057",
                                "product": {
                                    "name": "vers:unknown/<v8.11.0.1 interim fix 057",
                                    "product_id": "CSAFPID-8557525"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<v8.11.1: interim fix 056",
                                "product": {
                                    "name": "vers:unknown/<v8.11.1: interim fix 056",
                                    "product_id": "CSAFPID-8557526"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<v8.12.0.1: interim fix 040",
                                "product": {
                                    "name": "vers:unknown/<v8.12.0.1: interim fix 040",
                                    "product_id": "CSAFPID-8557527"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<v9.0.0.1: interim fix 026",
                                "product": {
                                    "name": "vers:unknown/<v9.0.0.1: interim fix 026",
                                    "product_id": "CSAFPID-8557528"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<v9.5.0.1: interim fix 012",
                                "product": {
                                    "name": "vers:unknown/<v9.5.0.1: interim fix 012",
                                    "product_id": "CSAFPID-8557524"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Operational Decision Manager"
                    }
                ],
                "category": "vendor",
                "name": "IBM"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.12",
                                        "product": {
                                            "name": "vers:rpm/4.12",
                                            "product_id": "CSAFPID-5277768",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.12::el8"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.12"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.13",
                                        "product": {
                                            "name": "vers:rpm/4.13",
                                            "product_id": "CSAFPID-5277928",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.13::el8"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.13"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.14",
                                        "product": {
                                            "name": "vers:rpm/4.14",
                                            "product_id": "CSAFPID-5277835",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.14::el8"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.14"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.15",
                                        "product": {
                                            "name": "vers:rpm/4.15",
                                            "product_id": "CSAFPID-5277791",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.15::el8"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.15"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.16",
                                        "product": {
                                            "name": "vers:rpm/4.16",
                                            "product_id": "CSAFPID-5277955",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.16::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.16"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.17",
                                        "product": {
                                            "name": "vers:rpm/4.17",
                                            "product_id": "CSAFPID-5277239",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.17::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.17"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.18",
                                        "product": {
                                            "name": "vers:rpm/4.18",
                                            "product_id": "CSAFPID-5277961",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.18::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.18"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.19",
                                        "product": {
                                            "name": "vers:rpm/4.19",
                                            "product_id": "CSAFPID-5277958",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.19::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.19"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.20",
                                        "product": {
                                            "name": "vers:rpm/4.20",
                                            "product_id": "CSAFPID-9061516",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.20::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.20"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.21",
                                        "product": {
                                            "name": "vers:rpm/4.21",
                                            "product_id": "CSAFPID-6233620",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.21::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.21"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/4.22",
                                        "product": {
                                            "name": "vers:rpm/4.22",
                                            "product_id": "CSAFPID-9061722",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/a:redhat:ocp_tools:4.22::el9"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "OpenShift Developer Tools and Services 4.22"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786628706",
                                        "product": {
                                            "name": "vers:oci/1786628706",
                                            "product_id": "CSAFPID-9061715",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel8@sha256%3A34d10464449bb0698080f4ce1dff3d8e27477f46959c8b5eae830cdd2bd4d1e9?arch=amd64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel8&tag=1786628706"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786628711",
                                        "product": {
                                            "name": "vers:oci/1786628711",
                                            "product_id": "CSAFPID-9061707",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel8@sha256%3A3b8ec6f7ec4523427907b7a7bc95daa742460c3995bba6de284ce47079cf51ae?arch=amd64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel8&tag=1786628711"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786628726",
                                        "product": {
                                            "name": "vers:oci/1786628726",
                                            "product_id": "CSAFPID-9061726",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel8@sha256%3Ad478dc42fb478c89d3f7a3b506b9852ba3f72820e0cdd8e882452d479276083a?arch=amd64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel8&tag=1786628726"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786628748",
                                        "product": {
                                            "name": "vers:oci/1786628748",
                                            "product_id": "CSAFPID-9061711",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel8@sha256%3A9a4306c79b02caa28e3ebde184e1bfefcc42e4ce770f2f710af47f1085721cd8?arch=ppc64le&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel8&tag=1786628748"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-agent-base-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124633",
                                        "product": {
                                            "name": "vers:oci/1787124633",
                                            "product_id": "CSAFPID-9061709",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3Aff3b99e18e5371592f54fbfadf04cac8de3a9355a0eb5c759c53c67fbf972033?arch=s390x&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787124633"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124634",
                                        "product": {
                                            "name": "vers:oci/1787124634",
                                            "product_id": "CSAFPID-9061713",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3Afecfacdbd7d2344ac7697016edd2d76c191ee35e4bc14d306ad2b132d2e7d8dc?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787124634"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124663",
                                        "product": {
                                            "name": "vers:oci/1787124663",
                                            "product_id": "CSAFPID-9061717",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3Aa0956de91f8c036ea551e27c15af3cdd0bfe6f61abf6240d1a7abdd62a2d0582?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787124663"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124986",
                                        "product": {
                                            "name": "vers:oci/1787124986",
                                            "product_id": "CSAFPID-9061721",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3Af3e4b8da3efbd3976db770dd7e84a63c98476578b2f4151354fd05ab00c3c0b5?arch=s390x&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787124986"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787125493",
                                        "product": {
                                            "name": "vers:oci/1787125493",
                                            "product_id": "CSAFPID-9061518",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3A8bc35fe48f2e28271f6af6b9b1a22a5f53e322fb8360fbfabf8f1259d35e0cd8?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787125493"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787125563",
                                        "product": {
                                            "name": "vers:oci/1787125563",
                                            "product_id": "CSAFPID-9061724",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3A44da2c30db909bb2bfae3096e871250426614981b1305fbb26ec77611048b4a0?arch=s390x&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787125563"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787125679",
                                        "product": {
                                            "name": "vers:oci/1787125679",
                                            "product_id": "CSAFPID-9061719",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-agent-base-rhel9@sha256%3Ad65aeeaac7bf62b294558eff2d8dfbf143aa1d1ae74f895485b2f3961bc3a6eb?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-agent-base-rhel9&tag=1787125679"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-agent-base-rhel9"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786533561",
                                        "product": {
                                            "name": "vers:oci/1786533561",
                                            "product_id": "CSAFPID-9061710",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel8@sha256%3Ae6948192af84f65c1bb3e90b80e24f7b29e2857bbeaee6255eb8328abf2d8366?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel8&tag=1786533561"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786533565",
                                        "product": {
                                            "name": "vers:oci/1786533565",
                                            "product_id": "CSAFPID-9061725",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel8@sha256%3A6cfea92fa5f74bf4f2ba11c3fabcaa10de1f1c44e9b3c35fca0c71408dc6308a?arch=s390x&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel8&tag=1786533565"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786628667",
                                        "product": {
                                            "name": "vers:oci/1786628667",
                                            "product_id": "CSAFPID-9061714",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel8@sha256%3Ae79a3e5f5482a8001dcf546d06d54ebeeaeed4e0bc94b0f3697706ec5dabf8ee?arch=amd64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel8&tag=1786628667"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1786628681",
                                        "product": {
                                            "name": "vers:oci/1786628681",
                                            "product_id": "CSAFPID-9061706",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel8@sha256%3A9335d056f63325a5e27878cdff6cca5124b316d6f1a5bc997f9116eac37c608e?arch=amd64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel8&tag=1786628681"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-rhel8"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124632",
                                        "product": {
                                            "name": "vers:oci/1787124632",
                                            "product_id": "CSAFPID-9061716",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Ab952b6abb5c988d789c8894523156e5b5c38d5ee63b287b08b0713ffe49b1835?arch=ppc64le&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787124632"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124635",
                                        "product": {
                                            "name": "vers:oci/1787124635",
                                            "product_id": "CSAFPID-9061720",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Aaefa004885cff2364970e66a5c0d7afb8ad76eb107320136256ef564aed71da1?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787124635"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124779",
                                        "product": {
                                            "name": "vers:oci/1787124779",
                                            "product_id": "CSAFPID-9061723",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Ad62461c8ae692ac0c36fa3c02171bc9166ae2cd1731fc01dbc65383d2f9277d3?arch=arm64&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787124779"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787124925",
                                        "product": {
                                            "name": "vers:oci/1787124925",
                                            "product_id": "CSAFPID-9061517",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Ab89b59be7aadc4b8ea009199ece674648d80c0a5254c5b6a852acd6cc92d45cf?arch=s390x&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787124925"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787125069",
                                        "product": {
                                            "name": "vers:oci/1787125069",
                                            "product_id": "CSAFPID-9061708",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Ad31294d03ca7f688563c7e3840d0aeabbd66779c67861e05fa5b114d945f9266?arch=ppc64le&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787125069"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787125166",
                                        "product": {
                                            "name": "vers:oci/1787125166",
                                            "product_id": "CSAFPID-9061712",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Ac23664a89feb1e9389947c5baed48fe1012cd36b8e39ca88716d2dad62195788?arch=ppc64le&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787125166"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:oci/1787125311",
                                        "product": {
                                            "name": "vers:oci/1787125311",
                                            "product_id": "CSAFPID-9061718",
                                            "product_identification_helper": {
                                                "purl": "pkg:oci/jenkins-rhel9@sha256%3Aeb64943a855ef3071a795d7e1b67759aa51a8f05ab5c44bf575cfb670a70b125?arch=ppc64le&repository_url=registry.redhat.io/ocp-tools-4/jenkins-rhel9&tag=1787125311"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "jenkins-rhel9"
                            }
                        ],
                        "category": "product_family",
                        "name": "OpenShift Developer Tools and Services"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.29",
                                "product": {
                                    "name": "vers:unknown/2.0.29",
                                    "product_id": "CSAFPID-8809260"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.13",
                                "product": {
                                    "name": "vers:unknown/2.1.13",
                                    "product_id": "CSAFPID-8809261"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.8",
                                "product": {
                                    "name": "vers:unknown/2.2.8",
                                    "product_id": "CSAFPID-8809262"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "maven/org.apache.mina/mina-core"
                    }
                ],
                "category": "vendor",
                "name": "org.apache.mina"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:deb/unknown",
                                        "product": {
                                            "name": "vers:deb/unknown",
                                            "product_id": "CSAFPID-2624269"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mina"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:deb/unknown",
                                        "product": {
                                            "name": "vers:deb/unknown",
                                            "product_id": "CSAFPID-1511571"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mina2"
                            }
                        ],
                        "category": "product_family",
                        "name": "bookworm"
                    }
                ],
                "category": "vendor",
                "name": "Debian"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.0",
                                "product": {
                                    "name": "vers:unknown/1.0.0",
                                    "product_id": "CSAFPID-8771700",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.1",
                                "product": {
                                    "name": "vers:unknown/1.0.1",
                                    "product_id": "CSAFPID-8771701",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.10",
                                "product": {
                                    "name": "vers:unknown/1.0.10",
                                    "product_id": "CSAFPID-8771702",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.10"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.2",
                                "product": {
                                    "name": "vers:unknown/1.0.2",
                                    "product_id": "CSAFPID-8771703",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.3",
                                "product": {
                                    "name": "vers:unknown/1.0.3",
                                    "product_id": "CSAFPID-8771704",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.4",
                                "product": {
                                    "name": "vers:unknown/1.0.4",
                                    "product_id": "CSAFPID-8771705",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.5",
                                "product": {
                                    "name": "vers:unknown/1.0.5",
                                    "product_id": "CSAFPID-8771706",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.6",
                                "product": {
                                    "name": "vers:unknown/1.0.6",
                                    "product_id": "CSAFPID-8771707",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.7",
                                "product": {
                                    "name": "vers:unknown/1.0.7",
                                    "product_id": "CSAFPID-8771708",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.7"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.8",
                                "product": {
                                    "name": "vers:unknown/1.0.8",
                                    "product_id": "CSAFPID-8771709",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.8"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.0.9",
                                "product": {
                                    "name": "vers:unknown/1.0.9",
                                    "product_id": "CSAFPID-8771710",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.0.9"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.0",
                                "product": {
                                    "name": "vers:unknown/1.1.0",
                                    "product_id": "CSAFPID-8771711",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.1",
                                "product": {
                                    "name": "vers:unknown/1.1.1",
                                    "product_id": "CSAFPID-8771712",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.2",
                                "product": {
                                    "name": "vers:unknown/1.1.2",
                                    "product_id": "CSAFPID-8771713",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.3",
                                "product": {
                                    "name": "vers:unknown/1.1.3",
                                    "product_id": "CSAFPID-8771714",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.4",
                                "product": {
                                    "name": "vers:unknown/1.1.4",
                                    "product_id": "CSAFPID-8771715",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.5",
                                "product": {
                                    "name": "vers:unknown/1.1.5",
                                    "product_id": "CSAFPID-8771716",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.6",
                                "product": {
                                    "name": "vers:unknown/1.1.6",
                                    "product_id": "CSAFPID-8771717",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1.1.7",
                                "product": {
                                    "name": "vers:unknown/1.1.7",
                                    "product_id": "CSAFPID-8771718",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@1.1.7"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0",
                                "product": {
                                    "name": "vers:unknown/2.0.0",
                                    "product_id": "CSAFPID-5530695",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-m1",
                                "product": {
                                    "name": "vers:unknown/2.0.0-m1",
                                    "product_id": "CSAFPID-5530696",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-M1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-m2",
                                "product": {
                                    "name": "vers:unknown/2.0.0-m2",
                                    "product_id": "CSAFPID-5530697",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-M2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-m3",
                                "product": {
                                    "name": "vers:unknown/2.0.0-m3",
                                    "product_id": "CSAFPID-5530698",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-M3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-m4",
                                "product": {
                                    "name": "vers:unknown/2.0.0-m4",
                                    "product_id": "CSAFPID-5530699",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-M4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-m5",
                                "product": {
                                    "name": "vers:unknown/2.0.0-m5",
                                    "product_id": "CSAFPID-5530700",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-M5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-m6",
                                "product": {
                                    "name": "vers:unknown/2.0.0-m6",
                                    "product_id": "CSAFPID-5530701",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-M6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.0-rc1",
                                "product": {
                                    "name": "vers:unknown/2.0.0-rc1",
                                    "product_id": "CSAFPID-5530702",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.0-RC1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.1",
                                "product": {
                                    "name": "vers:unknown/2.0.1",
                                    "product_id": "CSAFPID-5530703",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.10",
                                "product": {
                                    "name": "vers:unknown/2.0.10",
                                    "product_id": "CSAFPID-5530704",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.10"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.11",
                                "product": {
                                    "name": "vers:unknown/2.0.11",
                                    "product_id": "CSAFPID-5530705",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.11"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.12",
                                "product": {
                                    "name": "vers:unknown/2.0.12",
                                    "product_id": "CSAFPID-5530706",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.12"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.13",
                                "product": {
                                    "name": "vers:unknown/2.0.13",
                                    "product_id": "CSAFPID-5530707",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.13"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.14",
                                "product": {
                                    "name": "vers:unknown/2.0.14",
                                    "product_id": "CSAFPID-5530708",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.14"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.15",
                                "product": {
                                    "name": "vers:unknown/2.0.15",
                                    "product_id": "CSAFPID-5530709",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.15"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.16",
                                "product": {
                                    "name": "vers:unknown/2.0.16",
                                    "product_id": "CSAFPID-5530710",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.16"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.17",
                                "product": {
                                    "name": "vers:unknown/2.0.17",
                                    "product_id": "CSAFPID-5530711",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.17"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.18",
                                "product": {
                                    "name": "vers:unknown/2.0.18",
                                    "product_id": "CSAFPID-5530712",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.18"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.19",
                                "product": {
                                    "name": "vers:unknown/2.0.19",
                                    "product_id": "CSAFPID-5530713",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.19"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.2",
                                "product": {
                                    "name": "vers:unknown/2.0.2",
                                    "product_id": "CSAFPID-5530714",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.20",
                                "product": {
                                    "name": "vers:unknown/2.0.20",
                                    "product_id": "CSAFPID-5530715",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.20"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.21",
                                "product": {
                                    "name": "vers:unknown/2.0.21",
                                    "product_id": "CSAFPID-5530716",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.21"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.22",
                                "product": {
                                    "name": "vers:unknown/2.0.22",
                                    "product_id": "CSAFPID-5530717",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.22"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.23",
                                "product": {
                                    "name": "vers:unknown/2.0.23",
                                    "product_id": "CSAFPID-5530718",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.23"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.24",
                                "product": {
                                    "name": "vers:unknown/2.0.24",
                                    "product_id": "CSAFPID-5530719",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.24"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.25",
                                "product": {
                                    "name": "vers:unknown/2.0.25",
                                    "product_id": "CSAFPID-5530720",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.25"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.26",
                                "product": {
                                    "name": "vers:unknown/2.0.26",
                                    "product_id": "CSAFPID-5530721",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.26"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.27",
                                "product": {
                                    "name": "vers:unknown/2.0.27",
                                    "product_id": "CSAFPID-6615718",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.27"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.28",
                                "product": {
                                    "name": "vers:unknown/2.0.28",
                                    "product_id": "CSAFPID-8771719",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.28"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.3",
                                "product": {
                                    "name": "vers:unknown/2.0.3",
                                    "product_id": "CSAFPID-5530722",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.4",
                                "product": {
                                    "name": "vers:unknown/2.0.4",
                                    "product_id": "CSAFPID-5530723",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.5",
                                "product": {
                                    "name": "vers:unknown/2.0.5",
                                    "product_id": "CSAFPID-5530724",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.6",
                                "product": {
                                    "name": "vers:unknown/2.0.6",
                                    "product_id": "CSAFPID-5530725",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.7",
                                "product": {
                                    "name": "vers:unknown/2.0.7",
                                    "product_id": "CSAFPID-5530726",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.7"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.8",
                                "product": {
                                    "name": "vers:unknown/2.0.8",
                                    "product_id": "CSAFPID-5530727",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.8"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.0.9",
                                "product": {
                                    "name": "vers:unknown/2.0.9",
                                    "product_id": "CSAFPID-5530728",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.0.9"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.0",
                                "product": {
                                    "name": "vers:unknown/2.1.0",
                                    "product_id": "CSAFPID-5530684",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.1",
                                "product": {
                                    "name": "vers:unknown/2.1.1",
                                    "product_id": "CSAFPID-5530685",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.10",
                                "product": {
                                    "name": "vers:unknown/2.1.10",
                                    "product_id": "CSAFPID-6615720",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.10"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.11",
                                "product": {
                                    "name": "vers:unknown/2.1.11",
                                    "product_id": "CSAFPID-6624815",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.11"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.12",
                                "product": {
                                    "name": "vers:unknown/2.1.12",
                                    "product_id": "CSAFPID-8771698",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.12"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.2",
                                "product": {
                                    "name": "vers:unknown/2.1.2",
                                    "product_id": "CSAFPID-5530686",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.3",
                                "product": {
                                    "name": "vers:unknown/2.1.3",
                                    "product_id": "CSAFPID-5530687",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.4",
                                "product": {
                                    "name": "vers:unknown/2.1.4",
                                    "product_id": "CSAFPID-5530688",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.5",
                                "product": {
                                    "name": "vers:unknown/2.1.5",
                                    "product_id": "CSAFPID-5530689",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.6",
                                "product": {
                                    "name": "vers:unknown/2.1.6",
                                    "product_id": "CSAFPID-5530690",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.7",
                                "product": {
                                    "name": "vers:unknown/2.1.7",
                                    "product_id": "CSAFPID-5530691",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.7"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.8",
                                "product": {
                                    "name": "vers:unknown/2.1.8",
                                    "product_id": "CSAFPID-5530692",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.8"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.1.9",
                                "product": {
                                    "name": "vers:unknown/2.1.9",
                                    "product_id": "CSAFPID-5530693",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.1.9"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.0",
                                "product": {
                                    "name": "vers:unknown/2.2.0",
                                    "product_id": "CSAFPID-5530679",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.0"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.1",
                                "product": {
                                    "name": "vers:unknown/2.2.1",
                                    "product_id": "CSAFPID-5530680",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.1"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.2",
                                "product": {
                                    "name": "vers:unknown/2.2.2",
                                    "product_id": "CSAFPID-5530681",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.2"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.3",
                                "product": {
                                    "name": "vers:unknown/2.2.3",
                                    "product_id": "CSAFPID-5530682",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.3"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.4",
                                "product": {
                                    "name": "vers:unknown/2.2.4",
                                    "product_id": "CSAFPID-6615722",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.4"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.5",
                                "product": {
                                    "name": "vers:unknown/2.2.5",
                                    "product_id": "CSAFPID-6615723",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.5"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.6",
                                "product": {
                                    "name": "vers:unknown/2.2.6",
                                    "product_id": "CSAFPID-6624817",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.6"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/2.2.7",
                                "product": {
                                    "name": "vers:unknown/2.2.7",
                                    "product_id": "CSAFPID-8771696",
                                    "product_identification_helper": {
                                        "purl": "pkg:maven/org.apache.mina/mina-core@2.2.7"
                                    }
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=0|<2.0.29",
                                "product": {
                                    "name": "vers:unknown/>=0|<2.0.29",
                                    "product_id": "CSAFPID-8771720"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=2.1.0|<2.1.13",
                                "product": {
                                    "name": "vers:unknown/>=2.1.0|<2.1.13",
                                    "product_id": "CSAFPID-8771699"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/>=2.2.0|<2.2.8",
                                "product": {
                                    "name": "vers:unknown/>=2.2.0|<2.2.8",
                                    "product_id": "CSAFPID-8771697"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "mina-core"
                    }
                ],
                "category": "vendor",
                "name": "apache"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.2.1-3",
                                        "product": {
                                            "name": "vers:unknown/2.2.1-3",
                                            "product_id": "CSAFPID-6259833",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.2.1-3?arch=source&distro=questing"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.2.1-4",
                                        "product": {
                                            "name": "vers:unknown/2.2.1-4",
                                            "product_id": "CSAFPID-6259834",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.2.1-4?arch=source&distro=questing"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-6259835"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mina2"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:25.10"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.1.4-2",
                                        "product": {
                                            "name": "vers:unknown/2.1.4-2",
                                            "product_id": "CSAFPID-8491128",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.1.4-2?arch=source&distro=esm-apps/jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.1.5-1",
                                        "product": {
                                            "name": "vers:unknown/2.1.5-1",
                                            "product_id": "CSAFPID-8491129",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.1.5-1?arch=source&distro=esm-apps/jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.1.5-1ubuntu0.1~esm1",
                                        "product": {
                                            "name": "vers:unknown/2.1.5-1ubuntu0.1~esm1",
                                            "product_id": "CSAFPID-8491498",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.1.5-1ubuntu0.1~esm1?arch=source&distro=esm-apps/jammy"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-8491499"
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<2.1.5-1ubuntu0.1~esm1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<2.1.5-1ubuntu0.1~esm1",
                                            "product_id": "CSAFPID-8491130"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mina2"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:Pro:22.04:LTS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.2.1-3",
                                        "product": {
                                            "name": "vers:unknown/2.2.1-3",
                                            "product_id": "CSAFPID-8491131",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.2.1-3?arch=source&distro=esm-apps/noble"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.2.1-3ubuntu0.1~esm1",
                                        "product": {
                                            "name": "vers:unknown/2.2.1-3ubuntu0.1~esm1",
                                            "product_id": "CSAFPID-8491500",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.2.1-3ubuntu0.1~esm1?arch=source&distro=esm-apps/noble"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-8491501"
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<2.2.1-3ubuntu0.1~esm1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<2.2.1-3ubuntu0.1~esm1",
                                            "product_id": "CSAFPID-8491132"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mina2"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:Pro:24.04:LTS"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.2.1-4",
                                        "product": {
                                            "name": "vers:unknown/2.2.1-4",
                                            "product_id": "CSAFPID-8491133",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.2.1-4?arch=source&distro=esm-apps/resolute"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/2.2.1-4ubuntu0.1~esm1",
                                        "product": {
                                            "name": "vers:unknown/2.2.1-4ubuntu0.1~esm1",
                                            "product_id": "CSAFPID-8491502",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/ubuntu/mina2@2.2.1-4ubuntu0.1~esm1?arch=source&distro=esm-apps/resolute"
                                            }
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0",
                                        "product": {
                                            "name": "vers:unknown/>=0",
                                            "product_id": "CSAFPID-8491503"
                                        }
                                    },
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:unknown/>=0|<2.2.1-4ubuntu0.1~esm1",
                                        "product": {
                                            "name": "vers:unknown/>=0|<2.2.1-4ubuntu0.1~esm1",
                                            "product_id": "CSAFPID-8491134"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mina2"
                            }
                        ],
                        "category": "product_family",
                        "name": "Ubuntu:Pro:26.04:LTS"
                    }
                ],
                "category": "vendor",
                "name": "Ubuntu"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-47065",
            "cwe": {
                "id": "CWE-502",
                "name": "Deserialization of Untrusted Data"
            },
            "flags": [
                {
                    "label": "vulnerable_code_not_present",
                    "product_ids": [
                        "CSAFPID-9061518",
                        "CSAFPID-9061707",
                        "CSAFPID-9061709",
                        "CSAFPID-9061711",
                        "CSAFPID-9061713",
                        "CSAFPID-9061715",
                        "CSAFPID-9061717",
                        "CSAFPID-9061719",
                        "CSAFPID-9061721",
                        "CSAFPID-9061724",
                        "CSAFPID-9061726"
                    ]
                }
            ],
            "notes": [
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy\n\n\nAssessment: Fully addressed.\n\n\nWhen the serialised stream contains a TC_PROXYCLASSDESC (the marker \nfor a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc()\n is\ndispatched. JDK then calls the default \nObjectInputStream.resolveProxyClass(interfaces) implementation, which \nperforms Class.forName(intf, false, latestUserDefinedLoader()) for EACH \ninterface name and constructs the proxy class â€” bypassing the accepted\n classes list .\n\n\nZDRES-233: Class.forName(name, initialize=true, classLoader) in \nreadClassDescriptor Triggers Static Initialiser of Allow-Listed Classes\n\n\nAssessment: Fully addressed.\n\n\nFor ANY class on the allow-list, deserialising a stream that names it triggers the class’s \n (static initialiser) BEFORE any instance is constructed. This means an \nattacker who supplies a class name on the allow-list (e.g., the \ndeveloper wrote accept(“com.myapp.*\") , attacker supplies \ncom.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many \nreal-world classes have side-effecting static initialisers\n\n\nBoth issues have been fixed.",
                    "title": "nvd - https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-47065"
                },
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy Assessment: Fully addressed. When the serialised stream contains a TC_PROXYCLASSDESC (the marker for a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc()  is dispatched. JDK then calls the default ObjectInputStream.resolveProxyClass(interfaces) implementation, which performs Class.forName(intf, false, latestUserDefinedLoader()) for EACH interface name and constructs the proxy class â€” bypassing the accepted  classes list . ZDRES-233: Class.forName(name, initialize=true, classLoader) in readClassDescriptor Triggers Static Initialiser of Allow-Listed Classes Assessment: Fully addressed. For ANY class on the allow-list, deserialising a stream that names it triggers the class’s  (static initialiser) BEFORE any instance is constructed. This means an attacker who supplies a class name on the allow-list (e.g., the developer wrote accept(“com.myapp.*\") , attacker supplies com.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many real-world classes have side-effecting static initialisers Both issues have been fixed.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Ubuntu%2FUBUNTU-CVE-2026-47065.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "It was discovered that Apache MINA lacked an acceptMatchers allowlist\nmechanism to restrict which classes could be deserialized. An attacker\ncould use this to execute arbitrary code. This issue only affected\nUbuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2024-52046)\n\nIt was discovered that Apache MINA's deserialization filter could be\nbypassed via multiple code paths. An attacker could use this to execute\narbitrary code by sending a specially crafted serialized object over the\nnetwork. (CVE-2026-42778, CVE-2026-42779, CVE-2026-47065)",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Ubuntu%2FUSN-8465-1.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy\n\n\nAssessment: Fully addressed.\n\n\nWhen the serialised stream contains a TC_PROXYCLASSDESC (the marker \nfor a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc()\n is\ndispatched. JDK then calls the default \nObjectInputStream.resolveProxyClass(interfaces) implementation, which \nperforms Class.forName(intf, false, latestUserDefinedLoader()) for EACH \ninterface name and constructs the proxy class â€” bypassing the accepted\n classes list .\n\n\nZDRES-233: Class.forName(name, initialize=true, classLoader) in \nreadClassDescriptor Triggers Static Initialiser of Allow-Listed Classes\n\n\nAssessment: Fully addressed.\n\n\nFor ANY class on the allow-list, deserialising a stream that names it triggers the class’s \n (static initialiser) BEFORE any instance is constructed. This means an \nattacker who supplies a class name on the allow-list (e.g., the \ndeveloper wrote accept(“com.myapp.*\") , attacker supplies \ncom.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many \nreal-world classes have side-effecting static initialisers\n\n\nBoth issues have been fixed.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-47065.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy\n\n\nAssessment: Fully addressed.\n\n\nWhen the serialised stream contains a TC_PROXYCLASSDESC (the marker for a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc() is dispatched. JDK then calls the default  ObjectInputStream.resolveProxyClass(interfaces) implementation, which performs Class.forName(intf, false, latestUserDefinedLoader()) for EACH interface name and constructs the proxy class â€” bypassing the accepted classes list .\n\n\nZDRES-233: Class.forName(name, initialize=true, classLoader) in readClassDescriptor Triggers Static Initialiser of Allow-Listed Classes\n\n\nAssessment: Fully addressed.\n\n\nFor ANY class on the allow-list, deserialising a stream that names it triggers the class’s (static initialiser) BEFORE any instance is constructed. This means an attacker who supplies a class name on the allow-list (e.g., the developer wrote accept(“com.myapp.*\") , attacker supplies com.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many real-world classes have side-effecting static initialisers\n\n\nBoth issues have been fixed.",
                    "title": "osv - https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Maven%2FGHSA-v3pr-hxpr-mfm8.json?alt=media"
                },
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy\n\n\nAssessment: Fully addressed.\n\n\nWhen the serialised stream contains a TC_PROXYCLASSDESC (the marker for a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc() is dispatched. JDK then calls the default  ObjectInputStream.resolveProxyClass(interfaces) implementation, which performs Class.forName(intf, false, latestUserDefinedLoader()) for EACH interface name and constructs the proxy class â€” bypassing the accepted classes list .\n\n\nZDRES-233: Class.forName(name, initialize=true, classLoader) in readClassDescriptor Triggers Static Initialiser of Allow-Listed Classes\n\n\nAssessment: Fully addressed.\n\n\nFor ANY class on the allow-list, deserialising a stream that names it triggers the class’s (static initialiser) BEFORE any instance is constructed. This means an attacker who supplies a class name on the allow-list (e.g., the developer wrote accept(“com.myapp.*\") , attacker supplies com.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many real-world classes have side-effecting static initialisers\n\n\nBoth issues have been fixed.",
                    "title": "gitlab - https://gitlab.com/api/v4/projects/25847700/repository/files/maven%2Forg.apache.mina%2Fmina-core%2FCVE-2026-47065.yml/raw"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60259"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60249"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60250"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60248"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60251"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60247"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60252"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60254"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60246"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60256"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in mina. This vulnerability involves two issues related to how the software handles serialized objects, which are objects converted into a format for storage or transmission. Firstly, a bypass in the `resolveProxyClass` method allows for the deserialization of `java.lang.reflect.Proxy` objects, which are special objects used to control access to other objects. This bypass can circumvent security filters designed to prevent malicious object deserialization. Secondly, deserializing a stream that names an allow-listed class can trigger its static initializer, a block of code that runs automatically when a class is loaded. A remote attacker could exploit these flaws to execute arbitrary code, gaining unauthorized control over the system.",
                    "title": "redhat - https://access.redhat.com/errata/RHSA-2026:60239"
                },
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy   Assessment: Fully addressed.   When the serialised stream contains a TC_PROXYCLASSDESC (the marker  for a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc()  is dispatched. JDK then calls the default  ObjectInputStream.resolveProxyClass(interfaces) implementation, which  performs Class.forName(intf, false, latestUserDefinedLoader()) for EACH  interface name and constructs the proxy class â€” bypassing the accepted  classes list .   ZDRES-233: Class.forName(name, initialize=true, classLoader) in  readClassDescriptor Triggers Static Initialiser of Allow-Listed Classes   Assessment: Fully addressed.   For ANY class on the allow-list, deserialising a stream that names it triggers the class’s   (static initialiser) BEFORE any instance is constructed. This means an  attacker who supplies a class name on the allow-list (e.g., the  developer wrote accept(“com.myapp.*\") , attacker supplies  com.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many  real-world classes have side-effecting static initialisers   Both issues have been fixed.",
                    "title": "debian - https://security-tracker.debian.org/tracker/CVE-2026-47065"
                },
                {
                    "category": "description",
                    "text": "ZDRES-232: resolveProxyClass Not Overridden - acceptMatchers Filter Bypass via java.lang.reflect.Proxy\n\n\nAssessment: Fully addressed.\n\n\nWhen the serialised stream contains a TC_PROXYCLASSDESC (the marker \nfor a java.lang.reflect.Proxy ), JDK’s ObjectInputStream.readProxyDesc()\n is\ndispatched. JDK then calls the default \nObjectInputStream.resolveProxyClass(interfaces) implementation, which \nperforms Class.forName(intf, false, latestUserDefinedLoader()) for EACH \ninterface name and constructs the proxy class â€” bypassing the accepted\n classes list .\n\n\nZDRES-233: Class.forName(name, initialize=true, classLoader) in \nreadClassDescriptor Triggers Static Initialiser of Allow-Listed Classes\n\n\nAssessment: Fully addressed.\n\n\nFor ANY class on the allow-list, deserialising a stream that names it triggers the class’s \n (static initialiser) BEFORE any instance is constructed. This means an \nattacker who supplies a class name on the allow-list (e.g., the \ndeveloper wrote accept(“com.myapp.*\") , attacker supplies \ncom.myapp.SomeClass ) causes <clinit> of SomeClass â€” and many \nreal-world classes have side-effecting static initialisers\n\n\nBoth issues have been fixed.",
                    "title": "cveprojectv5 - https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/47xxx/CVE-2026-47065.json"
                },
                {
                    "category": "description",
                    "text": "Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Third Party (Apache Mina)).  Supported versions that are affected are 12.2.1.4.0 and  14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP/IP to compromise Oracle Access Manager.  Successful attacks of this vulnerability can result in takeover of Oracle Access Manager. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).",
                    "title": "oracle - https://www.oracle.com/a/tech/docs/security-alerts/cspusep2026csaf.json"
                },
                {
                    "category": "other",
                    "text": "0.005",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "5.7",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "There is product data available from source Oracle, There is product data available from source Certbundde, VENDOR FIX as product remediation category",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "Is related to a product by vendor Apache",
                    "title": "NCSC Score top decreasing factors"
                }
            ],
            "product_status": {
                "fixed": [
                    "CSAFPID-8809260",
                    "CSAFPID-8809261",
                    "CSAFPID-8809262",
                    "CSAFPID-9061517",
                    "CSAFPID-9061706",
                    "CSAFPID-9061708",
                    "CSAFPID-9061710",
                    "CSAFPID-9061712",
                    "CSAFPID-9061714",
                    "CSAFPID-9061716",
                    "CSAFPID-9061718",
                    "CSAFPID-9061720",
                    "CSAFPID-9061723",
                    "CSAFPID-9061725"
                ],
                "known_affected": [
                    "CSAFPID-8024012",
                    "CSAFPID-8024013",
                    "CSAFPID-8024014",
                    "CSAFPID-6259833",
                    "CSAFPID-6259834",
                    "CSAFPID-6259835",
                    "CSAFPID-1511571",
                    "CSAFPID-2624269",
                    "CSAFPID-8491128",
                    "CSAFPID-8491129",
                    "CSAFPID-8491130",
                    "CSAFPID-8491131",
                    "CSAFPID-8491132",
                    "CSAFPID-8491133",
                    "CSAFPID-8491134",
                    "CSAFPID-8491498",
                    "CSAFPID-8491499",
                    "CSAFPID-8491500",
                    "CSAFPID-8491501",
                    "CSAFPID-8491502",
                    "CSAFPID-8491503",
                    "CSAFPID-8518254",
                    "CSAFPID-8518255",
                    "CSAFPID-8518256",
                    "CSAFPID-8557524",
                    "CSAFPID-8557525",
                    "CSAFPID-8557526",
                    "CSAFPID-8557527",
                    "CSAFPID-8557528",
                    "CSAFPID-5530679",
                    "CSAFPID-5530680",
                    "CSAFPID-5530681",
                    "CSAFPID-5530682",
                    "CSAFPID-5530684",
                    "CSAFPID-5530685",
                    "CSAFPID-5530686",
                    "CSAFPID-5530687",
                    "CSAFPID-5530688",
                    "CSAFPID-5530689",
                    "CSAFPID-5530690",
                    "CSAFPID-5530691",
                    "CSAFPID-5530692",
                    "CSAFPID-5530693",
                    "CSAFPID-5530695",
                    "CSAFPID-5530696",
                    "CSAFPID-5530697",
                    "CSAFPID-5530698",
                    "CSAFPID-5530699",
                    "CSAFPID-5530700",
                    "CSAFPID-5530701",
                    "CSAFPID-5530702",
                    "CSAFPID-5530703",
                    "CSAFPID-5530704",
                    "CSAFPID-5530705",
                    "CSAFPID-5530706",
                    "CSAFPID-5530707",
                    "CSAFPID-5530708",
                    "CSAFPID-5530709",
                    "CSAFPID-5530710",
                    "CSAFPID-5530711",
                    "CSAFPID-5530712",
                    "CSAFPID-5530713",
                    "CSAFPID-5530714",
                    "CSAFPID-5530715",
                    "CSAFPID-5530716",
                    "CSAFPID-5530717",
                    "CSAFPID-5530718",
                    "CSAFPID-5530719",
                    "CSAFPID-5530720",
                    "CSAFPID-5530721",
                    "CSAFPID-5530722",
                    "CSAFPID-5530723",
                    "CSAFPID-5530724",
                    "CSAFPID-5530725",
                    "CSAFPID-5530726",
                    "CSAFPID-5530727",
                    "CSAFPID-5530728",
                    "CSAFPID-6615718",
                    "CSAFPID-6615720",
                    "CSAFPID-6615722",
                    "CSAFPID-6615723",
                    "CSAFPID-6624815",
                    "CSAFPID-6624817",
                    "CSAFPID-8771696",
                    "CSAFPID-8771697",
                    "CSAFPID-8771698",
                    "CSAFPID-8771699",
                    "CSAFPID-8771700",
                    "CSAFPID-8771701",
                    "CSAFPID-8771702",
                    "CSAFPID-8771703",
                    "CSAFPID-8771704",
                    "CSAFPID-8771705",
                    "CSAFPID-8771706",
                    "CSAFPID-8771707",
                    "CSAFPID-8771708",
                    "CSAFPID-8771709",
                    "CSAFPID-8771710",
                    "CSAFPID-8771711",
                    "CSAFPID-8771712",
                    "CSAFPID-8771713",
                    "CSAFPID-8771714",
                    "CSAFPID-8771715",
                    "CSAFPID-8771716",
                    "CSAFPID-8771717",
                    "CSAFPID-8771718",
                    "CSAFPID-8771719",
                    "CSAFPID-8771720",
                    "CSAFPID-1843537",
                    "CSAFPID-1914402",
                    "CSAFPID-2699078",
                    "CSAFPID-5450703",
                    "CSAFPID-1549106",
                    "CSAFPID-1549107",
                    "CSAFPID-1549109",
                    "CSAFPID-1847010",
                    "CSAFPID-5129879",
                    "CSAFPID-5452508",
                    "CSAFPID-9329732",
                    "CSAFPID-9329733"
                ],
                "known_not_affected": [
                    "CSAFPID-9061518",
                    "CSAFPID-9061707",
                    "CSAFPID-9061709",
                    "CSAFPID-9061711",
                    "CSAFPID-9061713",
                    "CSAFPID-9061715",
                    "CSAFPID-9061717",
                    "CSAFPID-9061719",
                    "CSAFPID-9061721",
                    "CSAFPID-9061724",
                    "CSAFPID-9061726"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60249"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60259"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60250"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60251"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60252"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60246"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60248"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60247"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60254"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60256"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60239"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/47xxx/CVE-2026-47065.json"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Ubuntu%2FUBUNTU-CVE-2026-47065.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - debian",
                    "url": "https://security-tracker.debian.org/tracker/CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Ubuntu%2FUSN-8465-1.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-2242.json"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/GIT%2FCVE-2026-47065.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - osv",
                    "url": "https://www.googleapis.com/download/storage/v1/b/osv-vulnerabilities/o/Maven%2FGHSA-v3pr-hxpr-mfm8.json?alt=media"
                },
                {
                    "category": "external",
                    "summary": "Source - gitlab",
                    "url": "https://gitlab.com/api/v4/projects/25847700/repository/files/maven%2Forg.apache.mina%2Fmina-core%2FCVE-2026-47065.yml/raw"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscclear",
                    "url": "https://vulnerabilities.ncsc.nl/manual/CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Source - oracle",
                    "url": "https://www.oracle.com/a/tech/docs/security-alerts/cspusep2026csaf.json"
                },
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-3396.json"
                },
                {
                    "category": "external",
                    "summary": "Source - ncscclear",
                    "url": "https://advisories.ncsc.nl/advisory?id=NCSC-2026-0372"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; gitlab; nvd; osv; redhat",
                    "url": "https://lists.apache.org/thread/y7xj1bl8qo47p9bktb11hg5v6k1d4dyj"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://ubuntu.com/security/CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv; redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://ubuntu.com/security/CVE-2024-52046"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://ubuntu.com/security/CVE-2026-42778"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://ubuntu.com/security/CVE-2026-42779"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://ubuntu.com/security/notices/USN-8465-1"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-2242.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2242"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7279423"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7282933"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.ibm.com/support/pages/node/7283607"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/47xxx/CVE-2026-47065.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - gitlab; osv; redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Reference - osv",
                    "url": "https://repo.maven.apache.org/maven2/org/apache/mina"
                },
                {
                    "category": "external",
                    "summary": "Reference - gitlab",
                    "url": "https://github.com/advisories/GHSA-v3pr-hxpr-mfm8"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60259"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2024-29371"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-14813"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2025-67030"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-0636"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-1605"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-2332"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-3505"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-40542"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-41409"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-41635"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-42778"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-42779"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-47065"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-50193"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-53435"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-53437"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-54399"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-54428"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-54512"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-5588"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-56624"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-57280"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-57281"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-68494"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-70426"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-70427"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-70428"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-70429"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/updates/classification/"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/updates/classification/#important"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2484326"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.20/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60259.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60249"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.13/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60249.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60250"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.18/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60250.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60248"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.14/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60248.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60251"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.16/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60251.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60247"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.12/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60247.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60252"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.19/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60252.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60254"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.21/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60254.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60246"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.17/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60246.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60256"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.22/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60256.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:60239"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://docs.redhat.com/en/documentation/openshift_container_platform/4.15/html/jenkins"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_60239.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - oracle",
                    "url": "https://www.oracle.com/docs/tech/security-alerts/cspusep2026csaf.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - oracle",
                    "url": "https://www.oracle.com/security-alerts/cspusep2026.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-3396.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-3396"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://www.oracle.com/security-alerts/cspusep2026.html#AppendixFMW"
                }
            ],
            "remediations": [
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.20 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-9061516",
                        "CSAFPID-9061517"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60259"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.13 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is not available in rhel8 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277928",
                        "CSAFPID-9061706"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60249"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.18 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277961",
                        "CSAFPID-9061708"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60250"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.14 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is not available in rhel8 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277835",
                        "CSAFPID-9061710"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60248"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.16 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277955",
                        "CSAFPID-9061712"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60251"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.12 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is not available in rhel8 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277768",
                        "CSAFPID-9061714"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60247"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.19 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277958",
                        "CSAFPID-9061716"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60252"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.21 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-6233620",
                        "CSAFPID-9061718"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60254"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.17 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277239",
                        "CSAFPID-9061720"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60246"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.22 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is available in rhel9 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-9061722",
                        "CSAFPID-9061723"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60256"
                },
                {
                    "category": "vendor_fix",
                    "details": "It is recommended that existing users of Red Hat OpenShift Developer Tools - OpenShift Jenkins 4.15 upgrade to the latest. This image uses java-21-openjdk as the default JDK. java-25-openjdk is not available in rhel8 images. java-17-openjdk is removed.",
                    "product_ids": [
                        "CSAFPID-5277791",
                        "CSAFPID-9061725"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:60239"
                },
                {
                    "category": "vendor_fix",
                    "details": "Oracle customers with valid support contracts",
                    "product_ids": [
                        "CSAFPID-2699078",
                        "CSAFPID-5450703"
                    ],
                    "url": "https://support.oracle.com/support/?documentId=CPU340"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                        "baseScore": 9.8,
                        "baseSeverity": "CRITICAL"
                    },
                    "products": [
                        "CSAFPID-1511571",
                        "CSAFPID-1549106",
                        "CSAFPID-1549107",
                        "CSAFPID-1549109",
                        "CSAFPID-1843537",
                        "CSAFPID-1847010",
                        "CSAFPID-1914402",
                        "CSAFPID-2624269",
                        "CSAFPID-2699078",
                        "CSAFPID-5129879",
                        "CSAFPID-5450703",
                        "CSAFPID-5452508",
                        "CSAFPID-5530679",
                        "CSAFPID-5530680",
                        "CSAFPID-5530681",
                        "CSAFPID-5530682",
                        "CSAFPID-5530684",
                        "CSAFPID-5530685",
                        "CSAFPID-5530686",
                        "CSAFPID-5530687",
                        "CSAFPID-5530688",
                        "CSAFPID-5530689",
                        "CSAFPID-5530690",
                        "CSAFPID-5530691",
                        "CSAFPID-5530692",
                        "CSAFPID-5530693",
                        "CSAFPID-5530695",
                        "CSAFPID-5530696",
                        "CSAFPID-5530697",
                        "CSAFPID-5530698",
                        "CSAFPID-5530699",
                        "CSAFPID-5530700",
                        "CSAFPID-5530701",
                        "CSAFPID-5530702",
                        "CSAFPID-5530703",
                        "CSAFPID-5530704",
                        "CSAFPID-5530705",
                        "CSAFPID-5530706",
                        "CSAFPID-5530707",
                        "CSAFPID-5530708",
                        "CSAFPID-5530709",
                        "CSAFPID-5530710",
                        "CSAFPID-5530711",
                        "CSAFPID-5530712",
                        "CSAFPID-5530713",
                        "CSAFPID-5530714",
                        "CSAFPID-5530715",
                        "CSAFPID-5530716",
                        "CSAFPID-5530717",
                        "CSAFPID-5530718",
                        "CSAFPID-5530719",
                        "CSAFPID-5530720",
                        "CSAFPID-5530721",
                        "CSAFPID-5530722",
                        "CSAFPID-5530723",
                        "CSAFPID-5530724",
                        "CSAFPID-5530725",
                        "CSAFPID-5530726",
                        "CSAFPID-5530727",
                        "CSAFPID-5530728",
                        "CSAFPID-6259833",
                        "CSAFPID-6259834",
                        "CSAFPID-6259835",
                        "CSAFPID-6615718",
                        "CSAFPID-6615720",
                        "CSAFPID-6615722",
                        "CSAFPID-6615723",
                        "CSAFPID-6624815",
                        "CSAFPID-6624817",
                        "CSAFPID-8024012",
                        "CSAFPID-8024013",
                        "CSAFPID-8024014",
                        "CSAFPID-8491128",
                        "CSAFPID-8491129",
                        "CSAFPID-8491130",
                        "CSAFPID-8491131",
                        "CSAFPID-8491132",
                        "CSAFPID-8491133",
                        "CSAFPID-8491134",
                        "CSAFPID-8491498",
                        "CSAFPID-8491499",
                        "CSAFPID-8491500",
                        "CSAFPID-8491501",
                        "CSAFPID-8491502",
                        "CSAFPID-8491503",
                        "CSAFPID-8518254",
                        "CSAFPID-8518255",
                        "CSAFPID-8518256",
                        "CSAFPID-8557524",
                        "CSAFPID-8557525",
                        "CSAFPID-8557526",
                        "CSAFPID-8557527",
                        "CSAFPID-8557528",
                        "CSAFPID-8771696",
                        "CSAFPID-8771697",
                        "CSAFPID-8771698",
                        "CSAFPID-8771699",
                        "CSAFPID-8771700",
                        "CSAFPID-8771701",
                        "CSAFPID-8771702",
                        "CSAFPID-8771703",
                        "CSAFPID-8771704",
                        "CSAFPID-8771705",
                        "CSAFPID-8771706",
                        "CSAFPID-8771707",
                        "CSAFPID-8771708",
                        "CSAFPID-8771709",
                        "CSAFPID-8771710",
                        "CSAFPID-8771711",
                        "CSAFPID-8771712",
                        "CSAFPID-8771713",
                        "CSAFPID-8771714",
                        "CSAFPID-8771715",
                        "CSAFPID-8771716",
                        "CSAFPID-8771717",
                        "CSAFPID-8771718",
                        "CSAFPID-8771719",
                        "CSAFPID-8771720",
                        "CSAFPID-9329732",
                        "CSAFPID-9329733"
                    ]
                }
            ],
            "title": "CVE-2026-47065"
        }
    ]
}