{"api_version":"v1","generated_at":"2026-10-08T16:50:00+00:00","product":{"cve_count":9,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-publisher-not-identified-libvips-c13fea1e78ee","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/libvips","name":"libvips","next_cursor":null,"observations":[{"affected":"8.18.0; 8.18.1; 8.18.2","affected_versions_present":true,"cve_id":"CVE-2026-6491","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-6491","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-18T02:59:14.319Z","patch_url":"","primary_source":"","published":"2026-04-17T13:45:11.506Z"},{"affected":"8.19.0","affected_versions_present":true,"cve_id":"CVE-2026-3284","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3284","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-27T18:49:42.929Z","patch_url":"https://github.com/libvips/libvips/pull/4887","primary_source":"","published":"2026-02-27T03:02:09.219Z"},{"affected":"8.19.0","affected_versions_present":true,"cve_id":"CVE-2026-3283","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3283","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-27T18:49:14.477Z","patch_url":"https://github.com/libvips/libvips/pull/4887","primary_source":"","published":"2026-02-27T02:32:12.328Z"},{"affected":"8.19.0","affected_versions_present":true,"cve_id":"CVE-2026-3282","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3282","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-27T18:55:47.355Z","patch_url":"https://github.com/libvips/libvips/pull/4886","primary_source":"","published":"2026-02-27T02:32:09.109Z"},{"affected":"8.19.0","affected_versions_present":true,"cve_id":"CVE-2026-3281","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3281","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-27T18:56:21.995Z","patch_url":"https://github.com/libvips/libvips/pull/4895","primary_source":"","published":"2026-02-27T02:02:10.922Z"},{"affected":"8.0; 8.1; 8.2; 8.3; 8.4; 8.5; 8.6; 8.7","affected_versions_present":true,"cve_id":"CVE-2026-3147","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3147","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-25T15:32:34.675Z","patch_url":"https://github.com/libvips/libvips/commit/b3ab458a25e0e261cbd1788474bbc763f7435780","primary_source":"","published":"2026-02-25T03:32:09.025Z"},{"affected":"8.0; 8.1; 8.2; 8.3; 8.4; 8.5; 8.6; 8.7","affected_versions_present":true,"cve_id":"CVE-2026-3146","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3146","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-25T15:52:33.882Z","patch_url":"https://github.com/libvips/libvips/pull/4888","primary_source":"","published":"2026-02-25T03:02:09.172Z"},{"affected":"8.0; 8.1; 8.2; 8.3; 8.4; 8.5; 8.6; 8.7","affected_versions_present":true,"cve_id":"CVE-2026-3145","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-3145","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-25T20:28:56.023Z","patch_url":"https://github.com/libvips/libvips/pull/4888","primary_source":"","published":"2026-02-25T02:02:10.604Z"},{"affected":"8.0; 8.1; 8.2; 8.3; 8.4; 8.5; 8.6; 8.7","affected_versions_present":true,"cve_id":"CVE-2026-2913","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2913","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-23T19:14:30.241Z","patch_url":"https://github.com/libvips/libvips/commit/a56feecbe9ed66521d9647ec9fbcd2546eccd7ee","primary_source":"","published":"2026-02-22T04:02:13.421Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Publisher not identified"}}
