{"api_version":"v1","generated_at":"2026-10-08T23:50:00+00:00","product":{"cve_count":3,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-realmag777-fox-ff99c5f6515b","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/fox","name":"FOX","next_cursor":null,"observations":[{"affected":"n/a \u2264 1.4.8","affected_versions_present":true,"cve_id":"CVE-2026-57319","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57319","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-26T15:41:17.083Z","patch_url":"","primary_source":"","published":"2026-06-26T14:53:00.002Z"},{"affected":"\u2264 1.4.5","affected_versions_present":true,"cve_id":"CVE-2026-39501","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-39501","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-29T09:52:01.916Z","patch_url":"","primary_source":"","published":"2026-04-08T08:30:13.172Z"},{"affected":"\u2264 1.4.5","affected_versions_present":true,"cve_id":"CVE-2026-39497","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-39497","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-29T09:52:01.939Z","patch_url":"","primary_source":"","published":"2026-04-08T08:30:12.597Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"RealMag777"}}
