{"api_version":"v1","generated_at":"2026-10-09T23:00:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-ggnomes-garden-gnome-package-c125af11e277","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Garden Gnome Package","next_cursor":null,"observations":[{"affected":"\u2264 2.3.0","affected_versions_present":true,"cve_id":"CVE-2024-12854","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-12854","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-08T16:59:04.184Z","patch_url":"","primary_source":"","published":"2025-01-08T09:18:36.303Z"},{"affected":"\u2264 2.2.9","affected_versions_present":true,"cve_id":"CVE-2024-8657","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-8657","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-08T16:43:27.460Z","patch_url":"https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3154566%40garden-gnome-package&new=3154566%40garden-gnome-package&sfp_email=&sfph_mail=","primary_source":"","published":"2024-09-24T01:56:45.907Z"},{"affected":"\u2264 2.2.8","affected_versions_present":true,"cve_id":"CVE-2023-5664","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-5664","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-08T17:05:59.009Z","patch_url":"https://plugins.trac.wordpress.org/browser/garden-gnome-package/tags/2.2.5/include/ggpackage.php#L284","primary_source":"","published":"2023-11-22T15:33:31.110Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"ggnomes"}}
