{"api_version":"v1","generated_at":"2026-10-06T23:05:00+00:00","product":{"cve_count":3,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-fastify-http-proxy-fastify-http-proxy-c914df03de99","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/%40fastify/http-proxy","name":"@fastify/http-proxy","next_cursor":null,"observations":[{"affected":"< 11.6.2","affected_versions_present":true,"cve_id":"CVE-2026-85124","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-85124","fixed":"11.6.2","last_modified":"2026-09-03T12:32:56.358Z","patch_url":"https://github.com/fastify/fastify-http-proxy/security/advisories/GHSA-qv33-689p-2xq5","primary_source":"","published":"2026-09-03T10:51:24.281Z"},{"affected":"< 11.6.0","affected_versions_present":true,"cve_id":"CVE-2026-16117","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-16117","fixed":"11.6.0","last_modified":"2026-07-20T15:14:49.004Z","patch_url":"https://github.com/fastify/fastify-http-proxy/security/advisories/GHSA-mx7v-qhg9-2mvv","primary_source":"","published":"2026-07-18T13:08:40.489Z"},{"affected":"9.4.0 < 11.6.0","affected_versions_present":true,"cve_id":"CVE-2026-15631","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-15631","fixed":"11.6.0","last_modified":"2026-07-20T15:15:21.351Z","patch_url":"https://github.com/fastify/fastify-http-proxy/security/advisories/GHSA-7hrw-592w-9wh2","primary_source":"","published":"2026-07-18T12:46:37.291Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"@fastify/http-proxy"}}
