{"api_version":"v1","generated_at":"2026-10-08T22:15:00+00:00","product":{"cve_count":9,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-bishopfox-sliver-87c0f9545243","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/sliver","name":"sliver","next_cursor":null,"observations":[{"affected":"sliver: 1.1.0 \u2264 1.7.7","affected_versions_present":true,"cve_id":"CVE-2026-102507","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-102507","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-01T15:19:47.776Z","patch_url":"","primary_source":"","published":"2026-09-29T11:49:54.760Z"},{"affected":"< 1.7.4","affected_versions_present":true,"cve_id":"CVE-2026-34227","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-34227","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-01T14:04:12.835Z","patch_url":"","primary_source":"","published":"2026-03-31T15:25:32.224Z"},{"affected":"<= 1.7.3","affected_versions_present":true,"cve_id":"CVE-2026-32941","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32941","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-21T02:53:38.174Z","patch_url":"","primary_source":"","published":"2026-03-20T03:37:40.884Z"},{"affected":"<= 1.7.3","affected_versions_present":true,"cve_id":"CVE-2026-29781","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-29781","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-09T18:26:52.610Z","patch_url":"https://github.com/BishopFox/sliver/security/advisories/GHSA-hx52-cv84-jr5v","primary_source":"","published":"2026-03-07T15:25:23.698Z"},{"affected":"< 1.7.0","affected_versions_present":true,"cve_id":"CVE-2026-25791","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25791","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-10T15:59:20.819Z","patch_url":"","primary_source":"","published":"2026-02-09T20:34:31.144Z"},{"affected":"< 1.6.11","affected_versions_present":true,"cve_id":"CVE-2026-25760","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25760","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-09T15:26:46.263Z","patch_url":"https://github.com/BishopFox/sliver/commit/818127349ccec812876693c4ca74ebf4350ec6b7","primary_source":"","published":"2026-02-06T21:32:27.276Z"},{"affected":"<= 1.5.43","affected_versions_present":true,"cve_id":"CVE-2025-27093","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-27093","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-10-29T17:43:54.102Z","patch_url":"","primary_source":"","published":"2025-10-28T19:29:16.147Z"},{"affected":">= 1.5.26, < 1.5.43","affected_versions_present":true,"cve_id":"CVE-2025-27090","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-27090","fixed":"1.5.43","last_modified":"2025-02-19T21:37:35.320Z","patch_url":"https://github.com/BishopFox/sliver/commit/0f340a25cf3d496ed870dae7da39eab4427bc16f","primary_source":"","published":"2025-02-19T21:11:06.671Z"},{"affected":"= 1.6.0-dev","affected_versions_present":true,"cve_id":"CVE-2024-41111","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-41111","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-02T04:46:52.372Z","patch_url":"","primary_source":"","published":"2024-07-18T22:11:44.705Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"BishopFox"}}
