{"api_version":"v1","generated_at":"2026-10-07T07:15:00+00:00","product":{"cve_count":1,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-hexpm-hex-core-47ecc78079d1","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"hex core","next_cursor":null,"observations":[{"affected":"eb327f8edfe45507351e38cc0805aa12fa647f0b < cdf726095bca85ad2549d146df1e831ae93c2b13; 0.1.0 < 0.12.1; 314546ac432229518714cc8e3336e916b9da6305 < 636739f3322514e9303ca335fb630696fcbb3c95; 2.3.0 < 2.3.2; 209c02ec57c2cc3207ee0174c3af3675b8dc8f79 < 1d4478f527e373de0b225951e53115450e0d9b9d; 3.9.1 < 3.27.0","affected_versions_present":true,"cve_id":"CVE-2026-21619","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-21619","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-05-27T15:40:33.166Z","patch_url":"https://github.com/hexpm/hex_core/commit/cdf726095bca85ad2549d146df1e831ae93c2b13","primary_source":"","published":"2026-02-27T17:57:11.513Z"}],"source_generated_at":"2026-10-06T06:22:27.870Z","vendor":"hexpm"}}
