{"api_version":"v1","generated_at":"2026-10-08T22:05:00+00:00","product":{"cve_count":11,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-shopperlabs-shopper-43611c98fdb6","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/shopper","name":"shopper","next_cursor":null,"observations":[{"affected":"shopper: < 2.9.2","affected_versions_present":true,"cve_id":"CVE-2026-56830","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56830","fixed":"2.9.2.","last_modified":"2026-09-15T19:44:12.701Z","patch_url":"https://github.com/shopperlabs/shopper/security/advisories/GHSA-99h5-jhh7-v3r3","primary_source":"","published":"2026-09-15T17:43:04.968Z"},{"affected":"shopper: < 2.9.0","affected_versions_present":true,"cve_id":"CVE-2026-56831","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56831","fixed":"2.9.0.","last_modified":"2026-09-16T14:41:52.114Z","patch_url":"https://github.com/shopperlabs/shopper/security/advisories/GHSA-5vf4-452p-jjhf","primary_source":"","published":"2026-09-15T17:42:09.495Z"},{"affected":"shopper: < 2.9.2","affected_versions_present":true,"cve_id":"CVE-2026-56827","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56827","fixed":"2.9.2.","last_modified":"2026-09-15T18:38:02.221Z","patch_url":"https://github.com/shopperlabs/shopper/security/advisories/GHSA-243p-f3cv-c5wh","primary_source":"","published":"2026-09-15T17:41:15.126Z"},{"affected":"shopper: < 2.9.2","affected_versions_present":true,"cve_id":"CVE-2026-56829","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56829","fixed":"2.9.2.","last_modified":"2026-09-15T19:04:52.685Z","patch_url":"https://github.com/shopperlabs/shopper/security/advisories/GHSA-g3f9-g5vj-p62f","primary_source":"","published":"2026-09-15T17:40:01.302Z"},{"affected":"shopper: < 2.9.2","affected_versions_present":true,"cve_id":"CVE-2026-56825","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-56825","fixed":"2.9.2.","last_modified":"2026-09-16T14:40:15.792Z","patch_url":"https://github.com/shopperlabs/shopper/security/advisories/GHSA-2cg9-97gq-9mqp","primary_source":"","published":"2026-09-15T17:38:42.928Z"},{"affected":"< 2.8.0","affected_versions_present":true,"cve_id":"CVE-2026-47743","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47743","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-23T18:19:03.439Z","patch_url":"","primary_source":"","published":"2026-07-23T17:20:25.550Z"},{"affected":"< 2.8.0","affected_versions_present":true,"cve_id":"CVE-2026-47740","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47740","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-02T01:50:53.411Z","patch_url":"","primary_source":"","published":"2026-05-29T18:03:54.473Z"},{"affected":"< 2.8.0","affected_versions_present":true,"cve_id":"CVE-2026-47741","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47741","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-29T19:18:41.685Z","patch_url":"","primary_source":"","published":"2026-05-29T18:02:13.168Z"},{"affected":"< 2.8.0","affected_versions_present":true,"cve_id":"CVE-2026-47742","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47742","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-01T15:19:52.067Z","patch_url":"","primary_source":"","published":"2026-05-29T18:00:31.896Z"},{"affected":"< 2.8.0","affected_versions_present":true,"cve_id":"CVE-2026-47744","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47744","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-29T21:38:15.231Z","patch_url":"","primary_source":"","published":"2026-05-29T17:58:21.342Z"},{"affected":"< 2.8.0","affected_versions_present":true,"cve_id":"CVE-2026-47745","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-47745","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-05-29T18:43:47.804Z","patch_url":"","primary_source":"","published":"2026-05-29T17:55:38.873Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"shopperlabs"}}
