{"api_version":"v1","generated_at":"2026-10-07T16:15:00+00:00","product":{"cve_count":3,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-steveiliop56-tinyauth-bcfd7942bc50","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/tinyauth","name":"tinyauth","next_cursor":null,"observations":[{"affected":"< 5.0.5","affected_versions_present":true,"cve_id":"CVE-2026-33544","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-33544","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-04-03T18:23:22.599Z","patch_url":"https://github.com/steveiliop56/tinyauth/commit/f26c2171610d5c2dfbba2edb6ccd39490e349803","primary_source":"","published":"2026-04-02T15:00:38.450Z"},{"affected":"< 5.0.3","affected_versions_present":true,"cve_id":"CVE-2026-32246","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32246","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-03-12T20:46:24.238Z","patch_url":"","primary_source":"","published":"2026-03-12T18:59:20.875Z"},{"affected":"< 5.0.3","affected_versions_present":true,"cve_id":"CVE-2026-32245","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-32245","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-03-12T20:46:29.581Z","patch_url":"https://github.com/steveiliop56/tinyauth/commit/b2a1bfb1f532e87f205fa3afa3fc9f148c53ab89","primary_source":"","published":"2026-03-12T18:57:51.330Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"steveiliop56"}}
