{"api_version":"v1","generated_at":"2026-10-09T09:20:00+00:00","product":{"cve_count":6,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-siderolabs-omni-c0a98464c7fe","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/omni","name":"omni","next_cursor":null,"observations":[{"affected":"omni: < 1.6.6, >= 1.7.0, < 1.7.3","affected_versions_present":true,"cve_id":"CVE-2026-45720","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45720","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-17T20:21:50.874Z","patch_url":"","primary_source":"","published":"2026-09-17T19:40:57.112Z"},{"affected":"omni: < 1.6.6, >= 1.7.0, < 1.7.3","affected_versions_present":true,"cve_id":"CVE-2026-45723","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45723","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-18T20:13:13.232Z","patch_url":"","primary_source":"","published":"2026-09-17T19:39:28.303Z"},{"affected":"omni: >= 1.3.0, < 1.6.6","affected_versions_present":true,"cve_id":"CVE-2026-45726","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-45726","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-09-21T21:09:15.556Z","patch_url":"","primary_source":"","published":"2026-09-17T19:37:50.625Z"},{"affected":"omni: >= 1.1.0-beta.0, < 1.1.5, < 1.0.2","affected_versions_present":true,"cve_id":"CVE-2025-61688","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-61688","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-10-14T14:14:06.042Z","patch_url":"","primary_source":"","published":"2025-10-13T20:46:54.907Z"},{"affected":"omni: >= 1.1.0-beta.0, < 1.1.5, < 1.0.2","affected_versions_present":true,"cve_id":"CVE-2025-59836","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-59836","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-10-14T14:28:17.108Z","patch_url":"https://github.com/siderolabs/omni/commit/1396083f766a1b0380e9949968d7fc17b7afecaa","primary_source":"","published":"2025-10-13T20:43:40.844Z"},{"affected":"< 0.48.0","affected_versions_present":true,"cve_id":"CVE-2025-59824","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-59824","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-09-24T20:09:36.681Z","patch_url":"https://github.com/siderolabs/omni/security/advisories/GHSA-hqrf-67pm-wgfq","primary_source":"","published":"2025-09-24T19:48:23.935Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"siderolabs"}}
