{"api_version":"v1","generated_at":"2026-10-07T21:10:00+00:00","product":{"cve_count":1,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-abilis-cpx-9b23c69a532e","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/cpx","name":"CPX","next_cursor":null,"observations":[{"affected":"< 9.0.7","affected_versions_present":true,"cve_id":"CVE-2025-35021","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-35021","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-05T14:54:15.000Z","patch_url":"https://www.runzero.com/advisories/abilis-cpx-authentication-bypass-cve-2025-35021/","primary_source":"","published":"2025-11-04T00:23:23.924Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Abilis"}}
