{"api_version":"v1","generated_at":"2026-10-09T10:05:00+00:00","product":{"cve_count":4,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-publisher-not-identified-hostel-8fe886eb0c7d","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/hostel","name":"Hostel","next_cursor":null,"observations":[{"affected":"< 1.1.5.9","affected_versions_present":true,"cve_id":"CVE-2025-6236","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6236","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-10T14:18:40.730Z","patch_url":"","primary_source":"","published":"2025-07-10T06:00:04.142Z"},{"affected":"< 1.1.5.8","affected_versions_present":true,"cve_id":"CVE-2025-6234","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6234","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-07-10T14:17:06.329Z","patch_url":"","primary_source":"","published":"2025-07-10T06:00:02.897Z"},{"affected":"< 1.1.5.3","affected_versions_present":true,"cve_id":"CVE-2024-3753","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-3753","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-01T20:20:01.144Z","patch_url":"","primary_source":"","published":"2024-07-13T06:00:04.802Z"},{"affected":"< 1.1.5.2","affected_versions_present":true,"cve_id":"CVE-2023-0545","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-0545","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-01-08T17:06:22.275Z","patch_url":"","primary_source":"","published":"2023-06-05T13:38:58.659Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Publisher not identified"}}
