{"api_version":"v1","generated_at":"2026-10-08T04:50:00+00:00","product":{"cve_count":21,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-decolua-9router-1900b443e331","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/9router","name":"9Router","next_cursor":null,"observations":[{"affected":"9Router: 0.5.0, 0.5.1, 0.5.2, 0.5.3, 0.5.4, 0.5.5, 0.5.6, 0.5.7, 0.5.8, 0.5.9, 0.5.10, 0.5.11, 0.5.12, 0.5.13, 0.5.14, 0.5.15, 0.5.16, 0.5.17, 0.5.18, 0.5.19, 0.5.20, 0.5.21, 0.5.22, 0.5.23, 0.5.24, 0.5.25, 0.5.26, 0.5.27, 0.5.28, 0.5.29, 0.5.30, 0.5.31, 0.5.32, 0.5.33, 0.5.34, 0.5.35, 0.5.36, 0.5.37, 0.5.38, 0.5.39, 0.5.40, 0.5.41, 0.5.42, 0.5.43, 0.5.44, 0.5.45, 0.5.46, 0.5.47, 0.5.48, 0.5.49, 0.5.50, 0.5.51, 0.5.52, 0.5.53, 0.5.54, 0.5.55","affected_versions_present":true,"cve_id":"CVE-2026-103530","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-103530","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-10-01T14:23:03.729Z","patch_url":"","primary_source":"","published":"2026-09-30T23:45:11.762Z"},{"affected":"9router: < 0.5.6","affected_versions_present":true,"cve_id":"CVE-2026-56682","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56682","fixed":"0.5.6.","last_modified":"2026-09-22T17:23:12.515Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-32gc-64m7-hj7v","primary_source":"","published":"2026-09-22T16:09:07.512Z"},{"affected":"9router: < 0.5.6","affected_versions_present":true,"cve_id":"CVE-2026-56681","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56681","fixed":"0.5.6.","last_modified":"2026-09-28T19:31:54.707Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-5mj8-gf6m-fhw8","primary_source":"","published":"2026-09-22T16:02:25.018Z"},{"affected":"9router: \u2264 0.5.55","affected_versions_present":true,"cve_id":"CVE-2026-72860","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72860","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-24T14:19:04.082Z","patch_url":"","primary_source":"","published":"2026-08-20T21:35:14.677Z"},{"affected":"9router: <= 0.5.4","affected_versions_present":true,"cve_id":"CVE-2026-56677","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56677","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-18T15:41:33.884Z","patch_url":"","primary_source":"","published":"2026-08-17T21:14:06.082Z"},{"affected":"< 0.4.60","affected_versions_present":true,"cve_id":"CVE-2026-63732","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63732","fixed":"0.4.60","last_modified":"2026-07-27T16:19:25.094Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-4922-8r65-fq26","primary_source":"","published":"2026-07-23T21:16:46.266Z"},{"affected":"< 0.4.72","affected_versions_present":true,"cve_id":"CVE-2026-63313","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63313","fixed":"0.4.72","last_modified":"2026-07-24T11:13:06.717Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-qj3v-64wj-q825","primary_source":"","published":"2026-07-23T21:16:45.573Z"},{"affected":"< 0.5.2","affected_versions_present":true,"cve_id":"CVE-2026-62312","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-62312","fixed":"0.5.2.","last_modified":"2026-07-16T18:51:28.371Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-63p9-g54h-prrp","primary_source":"","published":"2026-07-15T20:53:18.302Z"},{"affected":"< 0.5.6","affected_versions_present":true,"cve_id":"CVE-2026-56678","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56678","fixed":"0.5.6.","last_modified":"2026-07-16T12:53:24.795Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-6mwv-4mrm-5p3m","primary_source":"","published":"2026-07-15T20:51:33.190Z"},{"affected":"< 0.5.4","affected_versions_present":true,"cve_id":"CVE-2026-56679","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56679","fixed":"0.5.4.","last_modified":"2026-07-16T13:00:42.944Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-vmjq-hvgq-2wv4","primary_source":"","published":"2026-07-15T20:50:30.458Z"},{"affected":"<= 0.4.45","affected_versions_present":true,"cve_id":"CVE-2026-49353","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49353","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-16T15:12:31.230Z","patch_url":"","primary_source":"","published":"2026-07-15T20:49:15.693Z"},{"affected":">= 0.2.21, < 0.4.44","affected_versions_present":true,"cve_id":"CVE-2026-49352","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49352","fixed":"0.4.44","last_modified":"2026-07-16T18:55:46.479Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-jphh-m39h-6gwx","primary_source":"","published":"2026-07-15T20:43:41.168Z"},{"affected":">= 0.4.30, < 0.4.37","affected_versions_present":true,"cve_id":"CVE-2026-46339","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-46339","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-16T12:55:46.031Z","patch_url":"","primary_source":"","published":"2026-07-15T20:41:06.937Z"},{"affected":"\u2264 0.4.41","affected_versions_present":true,"cve_id":"CVE-2026-62328","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-62328","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T18:10:21.082Z","patch_url":"","primary_source":"","published":"2026-07-13T21:37:52.094Z"},{"affected":"\u2264 0.4.41","affected_versions_present":true,"cve_id":"CVE-2026-62327","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-62327","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-14T14:30:46.008Z","patch_url":"","primary_source":"","published":"2026-07-13T21:37:51.416Z"},{"affected":"\u2264 0.4.41","affected_versions_present":true,"cve_id":"CVE-2026-59801","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59801","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-14T13:00:25.203Z","patch_url":"","primary_source":"","published":"2026-07-13T21:30:07.257Z"},{"affected":"< 0.5.2","affected_versions_present":true,"cve_id":"CVE-2026-56675","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56675","fixed":"0.5.2.","last_modified":"2026-07-10T16:55:03.329Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-x5c9-v98j-722r","primary_source":"","published":"2026-07-10T15:39:23.282Z"},{"affected":"< 0.5.2","affected_versions_present":true,"cve_id":"CVE-2026-55638","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55638","fixed":"0.5.2.","last_modified":"2026-07-10T16:46:33.965Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-8gmq-j984-vp4r","primary_source":"","published":"2026-07-10T15:38:21.922Z"},{"affected":"< 0.5.2","affected_versions_present":true,"cve_id":"CVE-2026-55641","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55641","fixed":"0.5.2.","last_modified":"2026-07-10T19:06:14.379Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-86m2-fcxq-5q7c","primary_source":"","published":"2026-07-10T15:36:05.964Z"},{"affected":"< 0.5.2","affected_versions_present":true,"cve_id":"CVE-2026-56676","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56676","fixed":"0.5.2.","last_modified":"2026-07-13T18:11:54.297Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-cmhj-wh2f-9cgx","primary_source":"","published":"2026-07-10T15:30:49.514Z"},{"affected":"< 0.4.80","affected_versions_present":true,"cve_id":"CVE-2026-55500","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55500","fixed":"0.4.80.","last_modified":"2026-07-10T15:41:31.178Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-qvfm-67h2-2qfx","primary_source":"","published":"2026-07-10T15:28:27.620Z"},{"affected":"< 0.4.80","affected_versions_present":true,"cve_id":"CVE-2026-55501","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55501","fixed":"0.4.80.","last_modified":"2026-07-10T16:45:23.879Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-7cfm-pqrj-xgq7","primary_source":"","published":"2026-07-10T15:23:53.709Z"},{"affected":"< 0.4.44","affected_versions_present":true,"cve_id":"CVE-2026-59800","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-59800","fixed":"0.4.44","last_modified":"2026-07-07T19:08:07.806Z","patch_url":"https://github.com/decolua/9router/security/advisories/GHSA-g6g7-pvmx-m74p","primary_source":"","published":"2026-07-07T18:19:17.154Z"},{"affected":"0.1; 0.2; 0.3; 0.4.0","affected_versions_present":true,"cve_id":"CVE-2026-10269","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-10269","fixed":"0.4.1","last_modified":"2026-06-01T19:26:34.067Z","patch_url":"https://vuldb.com/vuln/367548","primary_source":"","published":"2026-06-01T15:15:09.660Z"},{"affected":"0.3.0; 0.3.1; 0.3.2; 0.3.3; 0.3.4; 0.3.5; 0.3.6; 0.3.7","affected_versions_present":true,"cve_id":"CVE-2026-5842","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-5842","fixed":"0.3.75","last_modified":"2026-04-13T19:59:23.935Z","patch_url":"https://vuldb.com/vuln/356298","primary_source":"","published":"2026-04-09T04:30:17.225Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"decolua"}}
