{"api_version":"v1","generated_at":"2026-10-08T16:50:00+00:00","product":{"cve_count":1,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-publisher-not-identified-codemirror-de5eb7be3092","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/codemirror","name":"CodeMirror","next_cursor":null,"observations":[{"affected":"5.65.0; 5.65.1; 5.65.2; 5.65.3; 5.65.4; 5.65.5; 5.65.6; 5.65.7","affected_versions_present":true,"cve_id":"CVE-2025-6493","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6493","fixed":"6.0","last_modified":"2025-09-29T13:48:37.784Z","patch_url":"https://vuldb.com/?id.313610","primary_source":"","published":"2025-06-22T22:00:10.483Z"},{"affected":"unspecified < 5.58.2","affected_versions_present":true,"cve_id":"CVE-2020-7760","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-7760","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-17T01:06:44.297Z","patch_url":"https://github.com/codemirror/CodeMirror/commit/55d0333907117c9231ffdf555ae8824705993bbb","primary_source":"","published":"2020-10-30T11:10:32.942Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Publisher not identified"}}
