{"api_version":"v1","generated_at":"2026-10-09T07:55:00+00:00","product":{"cve_count":4,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-publisher-not-identified-simple-git-6d93164d02d6","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/simple-git","name":"simple-git","next_cursor":null,"observations":[{"affected":"< 3.16.0","affected_versions_present":true,"cve_id":"CVE-2022-25860","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-25860","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-01T15:29:18.377Z","patch_url":"https://github.com/steveukx/git-js/pull/881/commits/95459310e5b8f96e20bb77ef1a6559036b779e13","primary_source":"","published":"2023-01-24T05:00:02.399Z"},{"affected":"unspecified < 3.15.0","affected_versions_present":true,"cve_id":"CVE-2022-25912","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-25912","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-22T20:15:14.996Z","patch_url":"https://security.snyk.io/vuln/SNYK-JS-SIMPLEGIT-3112221","primary_source":"","published":"2022-12-12T01:49:10.008Z"},{"affected":"unspecified < 3.5.0","affected_versions_present":true,"cve_id":"CVE-2022-24066","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24066","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T21:08:34.077Z","patch_url":"https://snyk.io/vuln/SNYK-JS-SIMPLEGIT-2434306","primary_source":"","published":"2022-04-01T20:00:16.930Z"},{"affected":"unspecified < 3.3.0","affected_versions_present":true,"cve_id":"CVE-2022-24433","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24433","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T21:57:22.111Z","patch_url":"https://snyk.io/vuln/SNYK-JS-SIMPLEGIT-2421199","primary_source":"","published":"2022-03-11T16:15:14.245Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Publisher not identified"}}
