{"api_version":"v1","generated_at":"2026-10-09T08:35:00+00:00","product":{"cve_count":8,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-bobbingwide-oik-3e20e584d9f6","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/oik","name":"oik","next_cursor":null,"observations":[{"affected":"oik: n/a \u2264 4.15.4","affected_versions_present":true,"cve_id":"CVE-2026-96819","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-96819","fixed":"Update the WordPress oik Plugin to the latest available version (at least 4.16.0).","last_modified":"2026-09-30T13:27:12.502Z","patch_url":"https://patchstack.com/database/wordpress/plugin/oik/vulnerability/wordpress-oik-plugin-4-15-4-cross-site-scripting-xss-vulnerability?_s_id=cve","primary_source":"","published":"2026-09-30T12:27:33.090Z"},{"affected":"oik: \u2264 4.15.3","affected_versions_present":true,"cve_id":"CVE-2025-67549","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-67549","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T19:19:38.917Z","patch_url":"","primary_source":"","published":"2025-12-09T14:14:06.739Z"},{"affected":"\u2264 4.15.2","affected_versions_present":true,"cve_id":"CVE-2025-54670","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-54670","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:13:34.234Z","patch_url":"","primary_source":"","published":"2025-08-20T08:02:53.018Z"},{"affected":"\u2264 4.15.2","affected_versions_present":true,"cve_id":"CVE-2025-54671","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-54671","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-12T00:31:29.000Z","patch_url":"","primary_source":"","published":"2025-08-14T10:34:39.773Z"},{"affected":"\u2264 4.15.1","affected_versions_present":true,"cve_id":"CVE-2025-49241","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-49241","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:12:58.985Z","patch_url":"","primary_source":"","published":"2025-06-06T12:53:34.877Z"},{"affected":"n/a \u2264 4.12.0","affected_versions_present":true,"cve_id":"CVE-2024-43356","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-43356","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:10:13.600Z","patch_url":"","primary_source":"","published":"2024-08-26T20:29:10.183Z"},{"affected":"\u2264 4.10.3","affected_versions_present":true,"cve_id":"CVE-2024-6391","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-6391","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-08T17:25:43.183Z","patch_url":"","primary_source":"","published":"2024-07-09T11:33:21.554Z"},{"affected":"\u2264 4.10.0","affected_versions_present":true,"cve_id":"CVE-2024-2256","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-2256","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-08T16:36:24.568Z","patch_url":"https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3049746%40oik&new=3049746%40oik&sfp_email=&sfph_mail=","primary_source":"","published":"2024-03-14T20:34:20.689Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"bobbingwide"}}
