{"api_version":"v1","generated_at":"2026-10-07T10:00:00+00:00","product":{"cve_count":4,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-fiveai-cachet-10b0b70a4e44","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/cachet","name":"Cachet","next_cursor":null,"observations":[{"affected":"< 2.5.1","affected_versions_present":true,"cve_id":"CVE-2021-39174","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-39174","fixed":"2.5.1","last_modified":"2024-08-04T01:58:18.255Z","patch_url":"https://github.com/fiveai/Cachet/releases/tag/v2.5.1","primary_source":"","published":"2021-08-27T23:25:08.000Z"},{"affected":"< 2.5.1","affected_versions_present":true,"cve_id":"CVE-2021-39173","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-39173","fixed":"2.5.1","last_modified":"2024-08-04T01:58:18.192Z","patch_url":"https://github.com/fiveai/Cachet/releases/tag/v2.5.1","primary_source":"","published":"2021-08-27T23:00:09.000Z"},{"affected":"< 2.5.1","affected_versions_present":true,"cve_id":"CVE-2021-39172","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-39172","fixed":"2.5.1","last_modified":"2024-08-04T01:58:18.282Z","patch_url":"https://github.com/fiveai/Cachet/security/advisories/GHSA-9jxw-cfrh-jxq6","primary_source":"","published":"2021-08-27T22:50:09.000Z"},{"affected":"<= 2.3.18","affected_versions_present":true,"cve_id":"CVE-2021-39165","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-39165","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T01:58:18.142Z","patch_url":"https://github.com/fiveai/Cachet/commit/27bca8280419966ba80c6fa283d985ddffa84bb6","primary_source":"","published":"2021-08-26T20:25:12.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"fiveai"}}
