{"api_version":"v1","generated_at":"2026-10-09T10:55:00+00:00","product":{"cve_count":19,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-sparklemotion-nokogiri-be6320657596","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/nokogiri","name":"nokogiri","next_cursor":null,"observations":[{"affected":"1.5.1 < 1.19.1","affected_versions_present":true,"cve_id":"CVE-2026-79772","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-79772","fixed":"1.19.1","last_modified":"2026-08-28T22:24:47.141Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-wx95-c6cv-8532","primary_source":"","published":"2026-08-25T15:16:04.400Z"},{"affected":"< 1.19.3","affected_versions_present":true,"cve_id":"CVE-2026-79771","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-79771","fixed":"1.19.3","last_modified":"2026-08-25T17:44:08.629Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-v2fc-qm4h-8hqv","primary_source":"","published":"2026-08-25T15:16:03.736Z"},{"affected":"nokogiri: < 1.19.3","affected_versions_present":true,"cve_id":"CVE-2026-79770","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-79770","fixed":"nokogiri: 1.19.3","last_modified":"2026-09-16T15:51:27.061Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-c4rq-3m3g-8wgx","primary_source":"","published":"2026-08-25T15:16:03.059Z"},{"affected":"nokogiri: < 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-79769","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-79769","fixed":"nokogiri: 1.19.4","last_modified":"2026-08-26T16:11:11.096Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-g9g8-vgvw-g3vf","primary_source":"","published":"2026-08-25T15:16:02.372Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57438","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57438","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T16:23:43.395Z","patch_url":"","primary_source":"","published":"2026-06-25T14:39:23.239Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57437","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57437","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T15:00:01.455Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-p67v-3w7g-wjg7","primary_source":"","published":"2026-06-25T14:34:09.482Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57436","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57436","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T23:27:34.410Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-wjv4-x9w8-wm3h","primary_source":"","published":"2026-06-25T14:33:29.496Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57435","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57435","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T14:53:19.607Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-phwj-rprq-35pp","primary_source":"","published":"2026-06-25T14:32:49.306Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57434","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57434","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T15:48:24.125Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-9cv2-cfxc-v4v2","primary_source":"","published":"2026-06-25T14:32:10.604Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57235","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57235","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T15:41:16.630Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-5prr-v3j2-97mh","primary_source":"","published":"2026-06-25T14:31:10.673Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57234","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57234","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T15:05:42.484Z","patch_url":"","primary_source":"","published":"2026-06-25T14:30:20.478Z"},{"affected":"< 1.19.4","affected_versions_present":true,"cve_id":"CVE-2026-57236","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57236","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-25T15:32:43.266Z","patch_url":"https://github.com/sparklemotion/nokogiri/security/advisories/GHSA-5v8h-3h3q-446p","primary_source":"","published":"2026-06-25T14:29:14.181Z"},{"affected":"c29c920907366cb74af13b4dc2230e9c9e23b833","affected_versions_present":true,"cve_id":"CVE-2025-6494","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6494","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-06-30T19:09:09.777Z","patch_url":"","primary_source":"","published":"2025-06-22T22:31:05.760Z"},{"affected":"c29c920907366cb74af13b4dc2230e9c9e23b833","affected_versions_present":true,"cve_id":"CVE-2025-6490","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-6490","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-06-30T19:09:07.204Z","patch_url":"","primary_source":"","published":"2025-06-22T19:00:11.556Z"},{"affected":">= 1.13.8, < 1.13.10","affected_versions_present":true,"cve_id":"CVE-2022-23476","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-23476","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-04-23T16:31:18.189Z","patch_url":"https://github.com/sparklemotion/nokogiri/commit/85410e38410f670cbbc8c5b00d07b843caee88ce","primary_source":"","published":"2022-12-08T03:03:24.572Z"},{"affected":"< 1.13.6","affected_versions_present":true,"cve_id":"CVE-2022-29181","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-29181","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-05-27T14:51:01.821Z","patch_url":"https://github.com/sparklemotion/nokogiri/commit/db05ba9a1bd4b90aa6c76742cf6102a7c7297267","primary_source":"","published":"2022-05-20T00:00:00.000Z"},{"affected":"< 1.13.4","affected_versions_present":true,"cve_id":"CVE-2022-24836","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-24836","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-03T12:03:46.858Z","patch_url":"https://github.com/sparklemotion/nokogiri/commit/e444525ef1634b675cd1cf52d39f4320ef0aecfd","primary_source":"","published":"2022-04-11T00:00:00.000Z"},{"affected":"< 1.12.5","affected_versions_present":true,"cve_id":"CVE-2021-41098","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-41098","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T02:59:31.455Z","patch_url":"https://github.com/sparklemotion/nokogiri/commit/5bf729ff3cc84709ee3c3248c981584088bf9f6d","primary_source":"","published":"2021-09-27T19:35:11.000Z"},{"affected":"< 1.11.0.rc4","affected_versions_present":true,"cve_id":"CVE-2020-26247","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-26247","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T15:56:04.939Z","patch_url":"https://github.com/sparklemotion/nokogiri/commit/9c87439d9afa14a365ff13e73adc809cb2c3d97b","primary_source":"","published":"2020-12-30T00:00:00.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"sparklemotion"}}
