{"api_version":"v1","generated_at":"2026-10-09T17:40:00+00:00","product":{"cve_count":14,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-ericcornelissen-shescape-21ab41fb1959","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/shescape","name":"shescape","next_cursor":null,"observations":[{"affected":"shescape: < 2.1.15, 3.0.0 < 3.0.2","affected_versions_present":true,"cve_id":"CVE-2026-73055","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73055","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-31T14:08:21.499Z","patch_url":"","primary_source":"","published":"2026-08-15T21:44:54.677Z"},{"affected":"< 2.1.14; >= 3.0.0, < 3.0.1","affected_versions_present":true,"cve_id":"CVE-2026-73414","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73414","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-14T22:11:29.290Z","patch_url":"","primary_source":"","published":"2026-08-12T19:42:55.520Z"},{"affected":">= 2.1.11, < 2.1.14; >= 3.0.0, < 3.0.1","affected_versions_present":true,"cve_id":"CVE-2026-73413","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73413","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-13T14:18:12.252Z","patch_url":"","primary_source":"","published":"2026-08-12T19:40:46.046Z"},{"affected":"< 2.1.14; >= 3.0.0, < 3.0.1","affected_versions_present":true,"cve_id":"CVE-2026-73412","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73412","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-13T12:38:03.573Z","patch_url":"","primary_source":"","published":"2026-08-12T19:38:41.860Z"},{"affected":"< 2.1.14; >= 3.0.0, < 3.0.1","affected_versions_present":true,"cve_id":"CVE-2026-73411","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73411","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-12T20:54:38.353Z","patch_url":"","primary_source":"","published":"2026-08-12T19:33:02.860Z"},{"affected":"< 2.1.10","affected_versions_present":true,"cve_id":"CVE-2026-32094","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32094","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-12T19:54:17.725Z","patch_url":"https://github.com/ericcornelissen/shescape/commit/6add105c6f6b508662bb5ae3b3bdd4c9bcebf37a","primary_source":"","published":"2026-03-11T19:50:10.617Z"},{"affected":">= 1.7.2, < 2.1.2","affected_versions_present":true,"cve_id":"CVE-2025-30222","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-30222","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-03-26T13:30:34.363Z","patch_url":"","primary_source":"","published":"2025-03-25T23:00:08.995Z"},{"affected":"< 1.7.4","affected_versions_present":true,"cve_id":"CVE-2023-40185","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-40185","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-30T19:14:01.973Z","patch_url":"https://github.com/ericcornelissen/shescape/security/advisories/GHSA-j55r-787p-m549","primary_source":"","published":"2023-08-23T20:20:45.807Z"},{"affected":"< 1.7.1","affected_versions_present":true,"cve_id":"CVE-2023-35931","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-35931","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-12-05T16:09:33.483Z","patch_url":"https://github.com/ericcornelissen/shescape/pull/982","primary_source":"","published":"2023-06-23T19:32:53.897Z"},{"affected":">= 1.5.1, < 1.5.10","affected_versions_present":true,"cve_id":"CVE-2022-36064","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-36064","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T17:24:08.126Z","patch_url":"https://github.com/ericcornelissen/shescape/pull/373","primary_source":"","published":"2022-09-06T20:55:10.000Z"},{"affected":"< 1.5.8","affected_versions_present":true,"cve_id":"CVE-2022-31179","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31179","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T17:46:08.799Z","patch_url":"https://github.com/ericcornelissen/shescape/security/advisories/GHSA-jjc5-fp7p-6f8w","primary_source":"","published":"2022-08-01T19:20:18.000Z"},{"affected":">=1.4.0 < 1.5.8","affected_versions_present":true,"cve_id":"CVE-2022-31180","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-31180","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T17:46:22.040Z","patch_url":"https://github.com/ericcornelissen/shescape/pull/322","primary_source":"","published":"2022-08-01T19:15:16.000Z"},{"affected":">= 1.4.0, < 1.5.1","affected_versions_present":true,"cve_id":"CVE-2022-24725","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24725","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T18:20:38.968Z","patch_url":"https://github.com/ericcornelissen/shescape/pull/170","primary_source":"","published":"2022-03-03T21:35:10.000Z"},{"affected":"< 1.1.3","affected_versions_present":true,"cve_id":"CVE-2021-21384","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-21384","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T18:09:15.790Z","patch_url":"https://github.com/ericcornelissen/shescape/commit/07a069a66423809cbedd61d980c11ca44a29ea2b","primary_source":"","published":"2021-03-18T23:50:13.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"ericcornelissen"}}
