After applying CR03, there is an outstanding vulnerability for Curl (CVE-2025-0665).
API Gateway 11.0
Per Curl's website, the version that is on the appliance is not impacted by the vulnerability.
REF: https://curl.se/docs/CVE-2025-0665.html
Also, per Debian's Security Tracker, the version we have on the appliance is not impacted by the vulnerability:
REF: https://security-tracker.debian.org/tracker/CVE-2025-0665
For Gateway 11.1.2 with the April 2025 MPP, the curl version is 7.88.1. The latest version of the gateway is not impacted by the vulnerability.