{"api_version":"v1","generated_at":"2026-10-08T06:15:00+00:00","product":{"cve_count":10,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-symfony-ux-61579bd62085","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/ux","name":"ux","next_cursor":null,"observations":[{"affected":">= 3.0.0, < 3.1.0; >= 2.22.0, < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49215","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49215","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T18:05:15.930Z","patch_url":"https://github.com/symfony/ux/commit/aed7493db2b4b7bf1f9c79b33cda544f06904b27","primary_source":"","published":"2026-07-17T16:16:42.126Z"},{"affected":">= 3.0.0, < 3.1.0; < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49216","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49216","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-21T01:44:13.539Z","patch_url":"https://github.com/symfony/ux/commit/842ae54bc74de389299f975f01aafae272cb0019","primary_source":"","published":"2026-07-17T16:15:34.990Z"},{"affected":">= 3.0.0, < 3.1.0; >= 2.2.0, < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49211","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49211","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T16:41:33.402Z","patch_url":"https://github.com/symfony/ux/commit/725ab3d40689c91ff19ad2d01940a30007769214","primary_source":"","published":"2026-07-17T16:14:29.271Z"},{"affected":">= 3.0.0, < 3.1.0; >= 2.8.0, < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49208","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49208","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-21T01:41:46.730Z","patch_url":"https://github.com/symfony/ux/commit/d24d78fda6df2d5964312255943ebf3a217b79a2","primary_source":"","published":"2026-07-17T16:10:49.101Z"},{"affected":">= 3.0.0, < 3.1.0; >= 2.8.0, < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49210","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49210","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T16:52:59.836Z","patch_url":"https://github.com/symfony/ux/commit/fbc5e9a1bda7e4556be21bb1d970f382760ed9a9","primary_source":"","published":"2026-07-17T16:09:17.850Z"},{"affected":">= 3.0.0, < 3.1.0; < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49212","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49212","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T17:48:49.503Z","patch_url":"https://github.com/symfony/ux/commit/a224b5af3e2e33ee14ac71356ae0e0877900a81c","primary_source":"","published":"2026-07-17T16:03:27.784Z"},{"affected":">= 3.0.0, < 3.1.0; >= 2.5.0, < 2.36.0","affected_versions_present":true,"cve_id":"CVE-2026-49209","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49209","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-17T17:26:18.929Z","patch_url":"https://github.com/symfony/ux/commit/95e878d5257f13d6d652ca95e3ef6bb0934d674f","primary_source":"","published":"2026-07-17T16:02:06.498Z"},{"affected":">= 2.17.0, < 2.36.1; >= 3.0.0, < 3.2.0","affected_versions_present":true,"cve_id":"CVE-2026-55877","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55877","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-09T14:40:25.026Z","patch_url":"https://github.com/symfony/ux/commit/3a4964ec3700f0af4e13f7bfbf8bb3174c3e79d1","primary_source":"","published":"2026-07-08T21:32:37.407Z"},{"affected":">= 2.32.0, < 2.36.1; >= 3.0.0, < 3.2.0","affected_versions_present":true,"cve_id":"CVE-2026-55878","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-55878","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-09T14:19:07.068Z","patch_url":"","primary_source":"","published":"2026-07-08T21:30:33.816Z"},{"affected":"< 2.25.1","affected_versions_present":true,"cve_id":"CVE-2025-47946","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-47946","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-05-20T13:01:10.237Z","patch_url":"","primary_source":"","published":"2025-05-19T19:25:19.350Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"symfony"}}
