{"api_version":"v1","generated_at":"2026-10-07T16:15:00+00:00","product":{"cve_count":1,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-hackerone-sprockets-0f021abe77d6","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/sprockets","name":"Sprockets","next_cursor":null,"observations":[{"affected":"4.0.0.beta8, 3.7.2, 2.12.5","affected_versions_present":true,"cve_id":"CVE-2018-3760","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-3760","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T18:39:20.968Z","patch_url":"https://groups.google.com/d/msg/rubyonrails-security/ft_J--l55fM/7roDfQ50BwAJ","primary_source":"","published":"2018-06-26T19:00:00.000Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"HackerOne"}}
