{"api_version":"v1","generated_at":"2026-10-08T23:50:00+00:00","product":{"cve_count":20,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-cubecart-v6-910b3ae1443d","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/v6","name":"v6","next_cursor":null,"observations":[{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54645","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54645","fixed":"6.7.5.","last_modified":"2026-09-22T01:58:02.824Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-43f6-gfcf-wj9c","primary_source":"","published":"2026-09-17T22:06:28.646Z"},{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54643","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54643","fixed":"6.7.5.","last_modified":"2026-09-18T13:06:13.667Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-8mmq-8hpq-2h23","primary_source":"","published":"2026-09-17T22:05:28.592Z"},{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54642","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54642","fixed":"6.7.5.","last_modified":"2026-09-24T20:55:23.627Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-cq6g-rf5m-42xg","primary_source":"","published":"2026-09-17T22:04:40.280Z"},{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54644","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54644","fixed":"6.7.5.","last_modified":"2026-09-18T20:02:30.778Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-v55x-fh73-29vq","primary_source":"","published":"2026-09-17T22:03:41.767Z"},{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54647","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54647","fixed":"6.7.5.","last_modified":"2026-09-24T20:55:23.503Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-hvmw-v8gc-4c29","primary_source":"","published":"2026-09-17T22:02:48.395Z"},{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54646","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54646","fixed":"6.7.5.","last_modified":"2026-09-18T18:32:29.629Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-qcx6-cg43-ffmx","primary_source":"","published":"2026-09-17T22:01:53.897Z"},{"affected":"v6: < 6.7.5","affected_versions_present":true,"cve_id":"CVE-2026-54648","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-54648","fixed":"6.7.5.","last_modified":"2026-09-18T13:08:09.649Z","patch_url":"https://github.com/cubecart/v6/security/advisories/GHSA-r376-2wr5-g9qx","primary_source":"","published":"2026-09-17T22:01:04.521Z"},{"affected":"< 6.7.3","affected_versions_present":true,"cve_id":"CVE-2026-45708","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45708","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T19:52:20.652Z","patch_url":"","primary_source":"","published":"2026-05-13T20:46:51.582Z"},{"affected":"< 6.7.2","affected_versions_present":true,"cve_id":"CVE-2026-45055","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45055","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T12:53:08.617Z","patch_url":"","primary_source":"","published":"2026-05-13T20:44:54.465Z"},{"affected":"< 6.7.0","affected_versions_present":true,"cve_id":"CVE-2026-45714","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45714","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T15:51:08.463Z","patch_url":"","primary_source":"","published":"2026-05-13T20:43:33.607Z"},{"affected":"< 6.7.0","affected_versions_present":true,"cve_id":"CVE-2026-45054","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45054","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T12:51:18.199Z","patch_url":"","primary_source":"","published":"2026-05-13T20:42:56.106Z"},{"affected":"< 6.7.0","affected_versions_present":true,"cve_id":"CVE-2026-45053","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45053","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-15T18:56:23.648Z","patch_url":"","primary_source":"","published":"2026-05-13T20:42:08.152Z"},{"affected":"< 6.7.0","affected_versions_present":true,"cve_id":"CVE-2026-44376","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44376","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-01T19:59:23.620Z","patch_url":"","primary_source":"","published":"2026-05-13T20:40:44.351Z"},{"affected":"< 6.6.0","affected_versions_present":true,"cve_id":"CVE-2026-39428","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-39428","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T12:52:08.863Z","patch_url":"","primary_source":"","published":"2026-05-13T20:39:54.119Z"},{"affected":"< 6.6.0","affected_versions_present":true,"cve_id":"CVE-2026-39358","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-39358","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T12:54:15.141Z","patch_url":"","primary_source":"","published":"2026-05-13T20:38:37.751Z"},{"affected":"< 6.7.0","affected_versions_present":true,"cve_id":"CVE-2026-44377","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44377","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-14T13:55:55.119Z","patch_url":"","primary_source":"","published":"2026-05-13T20:36:22.009Z"},{"affected":"< 6.5.11","affected_versions_present":true,"cve_id":"CVE-2025-59413","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-59413","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-22T17:26:29.173Z","patch_url":"https://github.com/cubecart/v6/commit/7fd1cd04f5d5c3ce1d7980327464f0ff6551de79","primary_source":"","published":"2025-09-22T16:15:00.351Z"},{"affected":"< 6.5.11","affected_versions_present":true,"cve_id":"CVE-2025-59412","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-59412","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-22T17:26:36.393Z","patch_url":"https://github.com/cubecart/v6/commit/1a0c0d8f6c9c141575eb5be07d04e7d49820005b","primary_source":"","published":"2025-09-22T16:14:44.152Z"},{"affected":"< 6.5.11","affected_versions_present":true,"cve_id":"CVE-2025-59411","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-59411","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-22T17:26:43.827Z","patch_url":"https://github.com/cubecart/v6/commit/299065bd4a8836782ce92f70988c730f130756db","primary_source":"","published":"2025-09-22T16:14:23.843Z"},{"affected":"< 6.5.11","affected_versions_present":true,"cve_id":"CVE-2025-59335","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-59335","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-22T17:26:51.453Z","patch_url":"https://github.com/cubecart/v6/commit/4bfaeb4485dd82255a108940a163af5ba4583b52","primary_source":"","published":"2025-09-22T16:13:23.838Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"cubecart"}}
