{"api_version":"v1","generated_at":"2026-10-07T14:30:00+00:00","product":{"cve_count":10,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-galette-galette-e13bf82f7b8a","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/galette","name":"galette","next_cursor":null,"observations":[{"affected":"< 1.2.0","affected_versions_present":true,"cve_id":"CVE-2025-58053","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-58053","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-19T18:00:53.263Z","patch_url":"","primary_source":"","published":"2025-12-19T16:26:00.148Z"},{"affected":">= 0.9.6, < 1.2.0","affected_versions_present":true,"cve_id":"CVE-2025-58052","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-58052","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-19T16:30:00.570Z","patch_url":"","primary_source":"","published":"2025-12-19T16:24:10.982Z"},{"affected":">= 1.1.4, < 1.2.0","affected_versions_present":true,"cve_id":"CVE-2025-53922","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-53922","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-12-19T15:25:27.634Z","patch_url":"","primary_source":"","published":"2025-12-19T15:10:00.685Z"},{"affected":"< 1.2.0","affected_versions_present":true,"cve_id":"CVE-2025-48884","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-48884","fixed":"1.2.0.","last_modified":"2025-11-04T21:03:39.940Z","patch_url":"https://github.com/galette/galette/security/advisories/GHSA-3rc3-rc5x-vmr4","primary_source":"","published":"2025-11-04T20:44:29.193Z"},{"affected":"< 1.2.0","affected_versions_present":true,"cve_id":"CVE-2025-48076","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-48076","fixed":"1.2.0.","last_modified":"2025-11-04T21:04:06.991Z","patch_url":"https://github.com/galette/galette/security/advisories/GHSA-ccwq-mxx3-chvh","primary_source":"","published":"2025-11-04T20:40:09.121Z"},{"affected":">= 1.0.0, < 1.0.2","affected_versions_present":true,"cve_id":"CVE-2024-24761","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-24761","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-22T18:34:53.055Z","patch_url":"https://github.com/galette/galette/commit/a5c18bb9819b8da1b3ef58f3e79577083c657fbb","primary_source":"","published":"2024-03-06T17:25:59.423Z"},{"affected":"< 0.9.6","affected_versions_present":true,"cve_id":"CVE-2021-41261","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41261","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T03:08:31.660Z","patch_url":"https://github.com/galette/galette/commit/0d55bc7f420470e0dbca91ebe7899c592905cbc5","primary_source":"","published":"2021-12-16T18:10:22.000Z"},{"affected":"< 0.9.6","affected_versions_present":true,"cve_id":"CVE-2021-41262","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41262","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T03:08:31.604Z","patch_url":"https://github.com/galette/galette/commit/8e940641b5ed46c3f471332827df388ea00a85d3","primary_source":"","published":"2021-12-16T18:10:16.000Z"},{"affected":"< 0.9.6","affected_versions_present":true,"cve_id":"CVE-2021-41260","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41260","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T03:08:31.567Z","patch_url":"https://github.com/galette/galette/commit/a5602bca2566f1be370631c3ab2d40feedd4b3ad","primary_source":"","published":"2021-12-16T18:10:11.000Z"},{"affected":"< 0.9.5","affected_versions_present":true,"cve_id":"CVE-2021-21319","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-21319","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T18:09:15.156Z","patch_url":"https://github.com/galette/galette/commit/514418da973ae5b84bf97f94bd288a41e8e3f0a6","primary_source":"","published":"2021-10-25T16:00:19.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"galette"}}
