{"api_version":"v1","generated_at":"2026-10-09T18:45:00+00:00","product":{"cve_count":4,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-prasunsen-hostel-fc3f17696ade","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/hostel","name":"Hostel","next_cursor":null,"observations":[{"affected":"Hostel: \u2264 1.1.8","affected_versions_present":true,"cve_id":"CVE-2026-1645","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-1645","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-22T14:12:27.374Z","patch_url":"","primary_source":"","published":"2026-09-22T07:41:12.398Z"},{"affected":"\u2264 1.1.7","affected_versions_present":true,"cve_id":"CVE-2026-3907","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3907","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-10T14:39:09.572Z","patch_url":"","primary_source":"","published":"2026-07-10T07:48:41.019Z"},{"affected":"\u2264 1.1.6","affected_versions_present":true,"cve_id":"CVE-2026-1838","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-1838","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-20T14:19:29.627Z","patch_url":"","primary_source":"","published":"2026-04-18T01:26:04.643Z"},{"affected":"\u2264 1.1.5.3","affected_versions_present":true,"cve_id":"CVE-2024-4314","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-4314","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-08T16:58:51.591Z","patch_url":"","primary_source":"","published":"2024-05-09T20:03:30.049Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"prasunsen"}}
