{
  "server": "com-blackduck-mcp-server",
  "component": "black-duck-mcp-server",
  "generated_at": "2026-08-03T23:34:58.339Z",
  "tracking_since": "2026-07-27",
  "counts": {
    "critical": 0,
    "security": 15,
    "functional": 0,
    "cosmetic": 0
  },
  "events": [
    {
      "id": "chg_019fc50c-169d-701f-baee-837cc70ed116",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67320",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67320",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67320 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169d-701f-baee-837cc70ed116"
    },
    {
      "id": "chg_019fc50c-169d-7806-8e52-d9ac7327811f",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67319",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67319",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67319 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169d-7806-8e52-d9ac7327811f"
    },
    {
      "id": "chg_019fc50c-169d-7e09-9736-687aa9514086",
      "kind": "check.reverified",
      "family": "install-scripts",
      "subject_kind": "check",
      "subject": "install-scripts",
      "subject_child": "",
      "from_code": "installscript.inconclusive",
      "to_code": "installscript.none",
      "from_value": "unverified",
      "to_value": "pass",
      "materiality": "security",
      "direction": "improvement",
      "score_delta": null,
      "detail": {
        "tier": "none"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Install scripts (unverified → pass)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169d-7e09-9736-687aa9514086"
    },
    {
      "id": "chg_019fc50c-169e-73d6-bc09-78e043d2d415",
      "kind": "check.reason",
      "family": "stability",
      "subject_kind": "check",
      "subject": "stability",
      "subject_child": "",
      "from_code": "stability.sandbox_pending",
      "to_code": "stability.sandbox_failed",
      "from_value": "unverified",
      "to_value": "unverified",
      "materiality": "security",
      "direction": "neutral",
      "score_delta": null,
      "detail": {
        "status": "unreachable"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Stability (Stability not yet verified: our sandbox run of this package did not complete, so we have no schema to compare.)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169e-73d6-bc09-78e043d2d415"
    },
    {
      "id": "chg_019fc50c-1697-7948-a5be-31e565e403b6",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67314",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67314",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67314 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-1697-7948-a5be-31e565e403b6"
    },
    {
      "id": "chg_019fc50c-1698-709f-899c-ad09fea5b03b",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67317",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67317",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67317 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-1698-709f-899c-ad09fea5b03b"
    },
    {
      "id": "chg_019fc50c-1698-76f0-b614-35c89946d27a",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67315",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67315",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67315 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-1698-76f0-b614-35c89946d27a"
    },
    {
      "id": "chg_019fc50c-1698-7d11-81e7-ceb8efe454ee",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67313",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67313",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67313 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-1698-7d11-81e7-ceb8efe454ee"
    },
    {
      "id": "chg_019fc50c-1699-73ad-898b-d2edb2297b5b",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67318",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67318",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67318 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-1699-73ad-898b-d2edb2297b5b"
    },
    {
      "id": "chg_019fc50c-1699-7a25-a4c7-71c6861b21fd",
      "kind": "check.reverified",
      "family": "build-provenance",
      "subject_kind": "check",
      "subject": "build-provenance",
      "subject_child": "",
      "from_code": "provenance.inconclusive",
      "to_code": "provenance.none",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {},
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Provenance (unverified → fail)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-1699-7a25-a4c7-71c6861b21fd"
    },
    {
      "id": "chg_019fc50c-169a-7848-bde8-b9f4d937720d",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67312",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67312",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67312 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169a-7848-bde8-b9f4d937720d"
    },
    {
      "id": "chg_019fc50c-169a-7eee-bc74-fee62eb19d6a",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "GHSA-frvp-7c67-39w9",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "GHSA-frvp-7c67-39w9",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "GHSA-frvp-7c67-39w9 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169a-7eee-bc74-fee62eb19d6a"
    },
    {
      "id": "chg_019fc50c-169b-7d6a-8712-acc1741b1e5c",
      "kind": "check.reverified",
      "family": "vulnerabilities",
      "subject_kind": "check",
      "subject": "vulnerabilities",
      "subject_child": "",
      "from_code": "cve.inconclusive",
      "to_code": "cve.direct",
      "from_value": "unverified",
      "to_value": "fail",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "path": "axios",
        "refs": "[\"GHSA-frvp-7c67-39w9\",\"CVE-2026-67313\",\"CVE-2026-67319\",\"CVE-2026-67315\",\"CVE-2026-67320\",\"CVE-2026-67321\",\"CVE-2026-67317\",\"CVE-2026-67316\",\"CVE-2026-67318\",\"CVE-2026-67312\",\"CVE-2026-67314\"]",
        "seen": "149",
        "direct": "1",
        "package": "axios",
        "version": "1.16.1",
        "assessed": "149",
        "resolved": "148",
        "severity": "high",
        "transitive": "1",
        "unresolved": "1",
        "vulnerable": "[{\"name\":\"@hono/node-server\",\"version\":\"1.19.17\",\"depth\":2,\"path\":[\"@modelcontextprotocol/sdk\",\"@hono/node-server\"],\"refs\":[\"GHSA-frvp-7c67-39w9\"]},{\"name\":\"axios\",\"version\":\"1.16.1\",\"depth\":1,\"path\":[\"axios\"],\"refs\":[\"CVE-2026-67313\",\"CVE-2026-67319\",\"CVE-2026-67315\",\"CVE-2026-67320\",\"CVE-2026-67321\",\"CVE-2026-67317\",\"CVE-2026-67316\",\"CVE-2026-67318\",\"CVE-2026-67312\",\"CVE-2026-67314\"]}]",
        "tree_source": "registry",
        "tree_status": "partial"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "Known CVEs (unverified → fail)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169b-7d6a-8712-acc1741b1e5c"
    },
    {
      "id": "chg_019fc50c-169c-74af-a97d-ed7270b33a01",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67316",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67316",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67316 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169c-74af-a97d-ed7270b33a01"
    },
    {
      "id": "chg_019fc50c-169c-793c-b7dc-8ceea2882eaa",
      "kind": "advisory.identified",
      "family": "vulnerabilities",
      "subject_kind": "advisory",
      "subject": "CVE-2026-67321",
      "subject_child": "",
      "from_code": null,
      "to_code": "cve.direct",
      "from_value": null,
      "to_value": "high",
      "materiality": "security",
      "direction": "regression",
      "score_delta": null,
      "detail": {
        "id": "CVE-2026-67321",
        "severity": "high"
      },
      "occurred_on": "2026-08-03",
      "occurred_at": "2026-08-03 00:35:31.573177+00",
      "observed_since": "2026-08-02",
      "source": "scan",
      "summary": "CVE-2026-67321 affects this package (high)",
      "link": "https://verifymcp.io/servers/com-blackduck-mcp-server/black-duck-mcp-server#chg-chg_019fc50c-169c-793c-b7dc-8ceea2882eaa"
    }
  ],
  "days": [
    {
      "date": "2026-08-03",
      "total": 15,
      "delta": 10,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 23
    },
    {
      "date": "2026-08-02",
      "total": 5,
      "delta": 0,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-31",
      "total": 5,
      "delta": -1,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 1
    },
    {
      "date": "2026-07-27",
      "total": 6,
      "delta": null,
      "tracked": true,
      "explained": true,
      "beyond_event_horizon": false,
      "attribution": null,
      "event_count": 0
    }
  ]
}