{"api_version":"v1","generated_at":"2026-10-08T23:35:00+00:00","product":{"cve_count":17,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-gofiber-fiber-db578f73f313","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/fiber","name":"fiber","next_cursor":null,"observations":[{"affected":"< 3.3.0","affected_versions_present":true,"cve_id":"CVE-2026-44332","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44332","fixed":"3.3.0.","last_modified":"2026-07-09T14:33:29.004Z","patch_url":"https://github.com/gofiber/fiber/pull/4245","primary_source":"","published":"2026-07-08T19:32:15.113Z"},{"affected":"< 3.4.0","affected_versions_present":true,"cve_id":"CVE-2026-53624","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53624","fixed":"3.4.0.","last_modified":"2026-07-10T14:57:28.656Z","patch_url":"https://github.com/gofiber/fiber/pull/4389","primary_source":"","published":"2026-07-08T19:32:08.191Z"},{"affected":">= 3.0.0-beta.2, < 3.3.0; < 2.52.14","affected_versions_present":true,"cve_id":"CVE-2026-45045","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45045","fixed":"3.3.0","last_modified":"2026-07-09T13:20:08.367Z","patch_url":"https://github.com/gofiber/fiber/pull/4260","primary_source":"","published":"2026-07-08T19:26:26.580Z"},{"affected":"< 2.52.13; >= 3.0.0-beta.2, < 3.1.0","affected_versions_present":true,"cve_id":"CVE-2026-42554","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42554","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-15T18:24:38.300Z","patch_url":"https://github.com/gofiber/fiber/security/advisories/GHSA-qjv7-627w-8qjv","primary_source":"","published":"2026-05-11T21:47:17.133Z"},{"affected":">= v3.0.0-beta.2, < 3.1.0","affected_versions_present":true,"cve_id":"CVE-2026-30246","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-30246","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-05T15:04:02.984Z","patch_url":"","primary_source":"","published":"2026-05-05T12:40:19.813Z"},{"affected":">= 3.0.0, < 3.1.0","affected_versions_present":true,"cve_id":"CVE-2026-25899","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25899","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-02-24T21:37:33.970Z","patch_url":"","primary_source":"","published":"2026-02-24T21:11:17.804Z"},{"affected":">= 3.0.0, < 3.1.0","affected_versions_present":true,"cve_id":"CVE-2026-25891","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25891","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-24T21:39:11.118Z","patch_url":"https://github.com/gofiber/fiber/commit/59133702301c2ab7b776dd123b474cbd995f2c86","primary_source":"","published":"2026-02-24T21:08:48.675Z"},{"affected":">= 2.0.0, < 2.52.12; >= 3.0.0, < 3.1.0","affected_versions_present":true,"cve_id":"CVE-2026-25882","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-25882","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-24T21:39:51.170Z","patch_url":"https://github.com/gofiber/fiber/pull/3962","primary_source":"","published":"2026-02-24T21:05:28.211Z"},{"affected":"< 2.52.11","affected_versions_present":true,"cve_id":"CVE-2025-66630","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-66630","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-10T16:02:43.238Z","patch_url":"https://github.com/gofiber/fiber/commit/eb874b6f6c5896b968d9b0ab2b56ac7052cb0ee1","primary_source":"","published":"2026-02-09T18:04:47.713Z"},{"affected":"< 2.52.9","affected_versions_present":true,"cve_id":"CVE-2025-54801","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-54801","fixed":"2.52.9.","last_modified":"2025-08-07T14:00:09.981Z","patch_url":"https://github.com/gofiber/fiber/commit/e115c08b8f059a4a031b492aa9eef0712411853d","primary_source":"","published":"2025-08-05T23:33:28.221Z"},{"affected":">= 2.52.6, < 2.52.7","affected_versions_present":true,"cve_id":"CVE-2025-48075","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-48075","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-05-22T17:59:02.707Z","patch_url":"https://github.com/gofiber/fiber/commit/e115c08b8f059a4a031b492aa9eef0712411853d","primary_source":"","published":"2025-05-22T17:25:18.447Z"},{"affected":"< 2.52.5","affected_versions_present":true,"cve_id":"CVE-2024-38513","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-38513","fixed":"2.52.5.","last_modified":"2024-08-02T04:12:25.224Z","patch_url":"https://github.com/gofiber/fiber/commit/66a881441b27322a331f1b526cf1eb6b3358a4d8","primary_source":"","published":"2024-07-01T18:31:13.028Z"},{"affected":"< 2.52.1","affected_versions_present":true,"cve_id":"CVE-2024-25124","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-25124","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-26T14:39:19.825Z","patch_url":"https://github.com/gofiber/fiber/commit/f0cd3b44b086544a37886232d0530601f2406c23","primary_source":"","published":"2024-02-21T21:01:44.672Z"},{"affected":"< 2.50.0","affected_versions_present":true,"cve_id":"CVE-2023-45141","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-45141","fixed":"2.50.0","last_modified":"2024-09-16T15:53:51.368Z","patch_url":"https://github.com/gofiber/fiber/security/advisories/GHSA-mv73-f69x-444p","primary_source":"","published":"2023-10-16T20:48:55.590Z"},{"affected":"< 2.50.0","affected_versions_present":true,"cve_id":"CVE-2023-45128","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-45128","fixed":"2.50.0","last_modified":"2024-09-16T14:23:48.099Z","patch_url":"https://github.com/gofiber/fiber/commit/8c3916dbf4ad2ed427d02c6eb63ae8b2fa8f019a","primary_source":"","published":"2023-10-16T20:45:07.068Z"},{"affected":"< 2.49.2","affected_versions_present":true,"cve_id":"CVE-2023-41338","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-41338","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-26T14:05:03.642Z","patch_url":"https://github.com/gofiber/fiber/commit/b8c9ede6efa231116c4bd8bb9d5e03eac1cb76dc","primary_source":"","published":"2023-09-08T18:17:18.044Z"},{"affected":"< 1.12.6","affected_versions_present":true,"cve_id":"CVE-2020-15111","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-15111","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T13:08:21.646Z","patch_url":"https://github.com/gofiber/fiber/pull/579/commits/f698b5d5066cfe594102ae252cd58a1fe57cf56f","primary_source":"","published":"2020-07-20T17:40:14.000Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"gofiber"}}
