{"api_version":"v1","generated_at":"2026-10-08T04:50:00+00:00","product":{"cve_count":1,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-google-tink-3c8743ba28c3","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/tink","name":"Tink","next_cursor":null,"observations":[{"affected":"2.0.0 < 2.1.3; \u2264 1.7.0","affected_versions_present":true,"cve_id":"CVE-2024-4420","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-4420","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-01T20:40:47.073Z","patch_url":"https://github.com/tink-crypto/tink-cc/issues/4","primary_source":"","published":"2024-05-21T11:52:28.398Z"},{"affected":"stable < 1.5","affected_versions_present":true,"cve_id":"CVE-2020-8929","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-8929","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T10:12:11.052Z","patch_url":"https://github.com/google/tink/commit/93d839a5865b9d950dffdc9d0bc99b71280a8899","primary_source":"","published":"2020-10-19T12:15:16.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"Google"}}
