{"id":"ROOT-APP-NPM-CVE-2026-53486","summary":"CVE-2026-53486 in @rootio/xhmikosr__decompress - Patched by Root","details":"Root has patched CVE-2026-53486 in the @rootio/xhmikosr__decompress package for Root:npm. Multiple fixed versions available.","modified":"2026-07-14T19:04:17.160691570Z","published":"2026-07-14T13:12:42Z","upstream":["CVE-2026-53486"],"database_specific":{"severity":"CRITICAL","source":"Root","distro":"npm","distro_version":""},"affected":[{"package":{"name":"@rootio/xhmikosr__decompress","ecosystem":"Root:npm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.2.0-root.io.1"}]}],"database_specific":{"root_patched":true,"total_fixed_versions":1,"upstream_version":"10.2.0-root.io.1","source":"https://api.root.io/external/osv/ROOT-APP-NPM-CVE-2026-53486.json","all_fixed_versions":["10.2.0-root.io.1"],"root_patch_version":""}},{"package":{"name":"@xhmikosr/decompress","ecosystem":"Root:npm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"10.2.0-aikido.1"}]}],"database_specific":{"root_patch_version":"","root_patched":true,"source":"https://api.root.io/external/osv/ROOT-APP-NPM-CVE-2026-53486.json","total_fixed_versions":1,"upstream_version":"10.2.0-aikido.1","all_fixed_versions":["10.2.0-aikido.1"]}},{"package":{"name":"@rootio/decompress","ecosystem":"Root:npm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.2.1-root.io.1"}]}],"database_specific":{"root_patch_version":"","root_patched":true,"total_fixed_versions":1,"upstream_version":"4.2.1-root.io.1","source":"https://api.root.io/external/osv/ROOT-APP-NPM-CVE-2026-53486.json","all_fixed_versions":["4.2.1-root.io.1"]}},{"package":{"name":"decompress","ecosystem":"Root:npm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.2.1-aikido.1"}]}],"database_specific":{"upstream_version":"4.2.1-aikido.1","all_fixed_versions":["4.2.1-aikido.1"],"root_patch_version":"","root_patched":true,"total_fixed_versions":1,"source":"https://api.root.io/external/osv/ROOT-APP-NPM-CVE-2026-53486.json"}}],"schema_version":"1.7.5"}