{"api_version":"v1","generated_at":"2026-10-09T07:15:00+00:00","product":{"cve_count":2,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-publisher-not-identified-sanitize-html-629d97a0a3ec","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/sanitize-html","name":"sanitize-html","next_cursor":null,"observations":[{"affected":"< 2.12.1; < *","affected_versions_present":true,"cve_id":"CVE-2024-21501","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-21501","fixed":"For Red Hat Advanced Cluster Management for Kubernetes, see the following documentation, which will be updated shortly for this release: https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_management_for_kubernetes/2.9/html-single/install/index#installing","last_modified":"2025-02-13T17:33:15.082Z","patch_url":"https://access.redhat.com/security/cve/CVE-2024-21501","primary_source":"","published":"2024-02-24T05:00:02.731Z"},{"affected":"unspecified < 2.7.1","affected_versions_present":true,"cve_id":"CVE-2022-25887","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-25887","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-17T03:07:00.082Z","patch_url":"https://security.snyk.io/vuln/SNYK-JS-SANITIZEHTML-2957526","primary_source":"","published":"2022-08-30T05:00:20.149Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"Publisher not identified"}}
