{"api_version":"v1","generated_at":"2026-10-09T04:35:00+00:00","product":{"cve_count":19,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-advplyr-audiobookshelf-fd138c91c33e","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"audiobookshelf","next_cursor":null,"observations":[{"affected":"< 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-73085","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73085","fixed":"2.36.0.","last_modified":"2026-08-11T18:39:19.953Z","patch_url":"https://github.com/advplyr/audiobookshelf/security/advisories/GHSA-798w-wv6c-2c3h","primary_source":"","published":"2026-08-11T16:40:22.518Z"},{"affected":"2.19.1 \u2264 2.35.1","affected_versions_present":true,"cve_id":"CVE-2026-71209","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-71209","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-10T11:45:13.437Z","patch_url":"","primary_source":"","published":"2026-08-05T06:59:16.579Z"},{"affected":"< 2.33.2","affected_versions_present":true,"cve_id":"CVE-2026-42888","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42888","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T16:33:52.322Z","patch_url":"","primary_source":"","published":"2026-05-11T20:16:48.540Z"},{"affected":"< 2.33.0","affected_versions_present":true,"cve_id":"CVE-2026-42887","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42887","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T13:29:46.446Z","patch_url":"","primary_source":"","published":"2026-05-11T19:55:32.090Z"},{"affected":"< 2.33.2","affected_versions_present":true,"cve_id":"CVE-2026-42886","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42886","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T12:57:50.120Z","patch_url":"","primary_source":"","published":"2026-05-11T19:54:10.876Z"},{"affected":"< 2.33.2","affected_versions_present":true,"cve_id":"CVE-2026-42885","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42885","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-11T20:22:08.300Z","patch_url":"","primary_source":"","published":"2026-05-11T19:52:58.149Z"},{"affected":"< 2.33.2","affected_versions_present":true,"cve_id":"CVE-2026-42884","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42884","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T13:25:42.923Z","patch_url":"","primary_source":"","published":"2026-05-11T19:52:23.339Z"},{"affected":"< 2.32.2","affected_versions_present":true,"cve_id":"CVE-2026-42883","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42883","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T16:32:16.291Z","patch_url":"","primary_source":"","published":"2026-05-11T19:51:43.211Z"},{"affected":"< 2.32.0","affected_versions_present":true,"cve_id":"CVE-2026-27963","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27963","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T14:43:59.379Z","patch_url":"https://github.com/advplyr/audiobookshelf/security/advisories/GHSA-69cp-m725-wf78","primary_source":"","published":"2026-02-26T02:08:21.298Z"},{"affected":"< 2.12.0; < 0.12.0-beta","affected_versions_present":true,"cve_id":"CVE-2026-27973","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-27973","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T14:45:25.252Z","patch_url":"https://github.com/advplyr/audiobookshelf/security/advisories/GHSA-2433-p93m-xhhg","primary_source":"","published":"2026-02-26T02:06:49.271Z"},{"affected":">= 2.6.0, < 2.28.0","affected_versions_present":true,"cve_id":"CVE-2025-57800","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-57800","fixed":"2.28.0.","last_modified":"2025-08-22T17:25:46.579Z","patch_url":"https://github.com/advplyr/audiobookshelf/commit/99a3867ce934b797e21e6ba5390d4b679e35f7cb","primary_source":"","published":"2025-08-22T17:02:04.472Z"},{"affected":"< 2.21.0","affected_versions_present":true,"cve_id":"CVE-2025-46338","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-46338","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-29T13:37:57.632Z","patch_url":"https://github.com/advplyr/audiobookshelf/commit/35870a01583b2947030f4e3d4ac769c3ff298386","primary_source":"","published":"2025-04-29T04:34:44.713Z"},{"affected":">= 2.17.0, < 2.19.1","affected_versions_present":true,"cve_id":"CVE-2025-25205","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-25205","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-02-13T14:14:25.849Z","patch_url":"https://github.com/advplyr/audiobookshelf/pull/3584","primary_source":"","published":"2025-02-12T18:16:01.326Z"},{"affected":"< 2.13.0","affected_versions_present":true,"cve_id":"CVE-2024-43797","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-43797","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-03T14:18:32.336Z","patch_url":"https://github.com/advplyr/audiobookshelf/security/advisories/GHSA-gg56-vj58-g5mc","primary_source":"","published":"2024-09-02T16:21:07.372Z"},{"affected":"< 2.10.0","affected_versions_present":true,"cve_id":"CVE-2024-35236","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-35236","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-02T03:07:46.867Z","patch_url":"https://github.com/advplyr/audiobookshelf/commit/ce7f891b9b2cb57c6644aaf96f89a8bda6307664","primary_source":"","published":"2024-05-27T17:03:46.175Z"},{"affected":"< 2.7.0","affected_versions_present":true,"cve_id":"CVE-2023-51665","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-51665","fixed":"2.7.0.","last_modified":"2024-08-02T22:40:34.167Z","patch_url":"https://github.com/advplyr/audiobookshelf/commit/728496010cbfcee5b7b54001c9f79e02ede30d82","primary_source":"","published":"2023-12-27T17:26:57.166Z"},{"affected":"< 2.7.0","affected_versions_present":true,"cve_id":"CVE-2023-51697","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-51697","fixed":"2.7.0.","last_modified":"2024-08-02T22:40:34.195Z","patch_url":"https://github.com/advplyr/audiobookshelf/commit/f2f2ea161ca0701e1405e737b0df0f96296e4f64","primary_source":"","published":"2023-12-27T17:26:54.876Z"},{"affected":"<= 2.4.3","affected_versions_present":true,"cve_id":"CVE-2023-47624","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-47624","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-02T21:16:42.103Z","patch_url":"","primary_source":"","published":"2023-12-13T21:09:00.688Z"},{"affected":"<= 2.4.3","affected_versions_present":true,"cve_id":"CVE-2023-47619","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-47619","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-05-22T18:04:00.226Z","patch_url":"","primary_source":"","published":"2023-12-13T21:02:34.389Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"advplyr"}}
