Direct Vulnerabilities

Known vulnerabilities in the druid package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2026-68494

<37.0.0-r56
  • L
GHSA-642r-3gj9-2pj5

<37.0.0-r56
  • L
GHSA-gx83-3vf8-gh7j

<38.0.0-r0
  • L
GHSA-q4xh-88c3-wmh7

<38.0.0-r0
  • L
CVE-2026-68497

<38.0.0-r0
  • L
CVE-2026-19032

<38.0.0-r0
  • L
CVE-2026-83557

<38.0.0-r0
  • L
GHSA-wjgm-6hv5-3cvf

<38.0.0-r0
  • L
GHSA-ph9c-7hw9-vhhw

<37.0.0-r60
  • L
Inefficient Regular Expression Complexity

<37.0.0-r60
  • L
GHSA-5q95-hrpc-m3w3

<37.0.0-r60
  • L
Inefficient Regular Expression Complexity

<37.0.0-r60
  • L
Inefficient Regular Expression Complexity

<37.0.0-r60
  • L
GHSA-r2xf-8xr9-62gw

<37.0.0-r60
  • L
GHSA-jh4v-gfqj-7rhx

<37.0.0-r59
  • L
Allocation of Resources Without Limits or Throttling

<37.0.0-r59
  • L
Resource Exhaustion

<37.0.0-r58
  • L
Improper Authentication

<37.0.0-r58
  • L
Information Exposure

<37.0.0-r58
  • L
GHSA-7grg-jcf7-rpmx

<37.0.0-r58
  • L
GHSA-xr57-gcx8-52hf

<37.0.0-r58
  • L
GHSA-fj9w-c36g-h5x8

<37.0.0-r58
  • L
GHSA-f8m2-889x-vw4x

<37.0.0-r58
  • L
Cleartext Transmission of Sensitive Information

<37.0.0-r58
  • L
GHSA-qp49-qgx5-5m26

<37.0.0-r57
  • L
GHSA-9pwp-9qqc-pr26

<37.0.0-r57
  • H
CVE-2026-13506

<37.0.0-r57
  • C
CVE-2026-8763

<37.0.0-r57
  • L
GHSA-3pjw-73gf-8qr5

<37.0.0-r56
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<37.0.0-r56
  • L
GHSA-fccg-mwvh-qqg4

<37.0.0-r56
  • L
GHSA-c4c3-7fpv-j4q5

<37.0.0-r56
  • C
Improper Check for Unusual or Exceptional Conditions

<37.0.0-r56
  • H
Algorithmic Complexity

<37.0.0-r56
  • L
GHSA-6qm2-mcq7-53qp

<37.0.0-r56
  • L
CVE-2026-18401

<37.0.0-r56
  • L
Sensitive Cookie with Improper SameSite Attribute

<37.0.0-r56
  • L
GHSA-m452-q8c9-rg2f

<37.0.0-r56
  • L
Improper Input Validation

<37.0.0-r56
  • L
GHSA-93j5-89vc-pph4

<37.0.0-r56
  • L
GHSA-5m9f-rphj-c435

<37.0.0-r56
  • L
GHSA-68mj-5wr7-6fgg

<37.0.0-r56
  • L
Improper Certificate Validation

<37.0.0-r56
  • L
GHSA-6g32-pxv4-2wfj

<37.0.0-r56
  • L
GHSA-qx7j-jv8m-fppr

<37.0.0-r56
  • L
Uncontrolled Recursion

<37.0.0-r56
  • L
Improper Input Validation

<37.0.0-r56
  • L
GHSA-5xwg-cfvj-gff5

<37.0.0-r56
  • L
Uncontrolled Memory Allocation

<37.0.0-r56
  • L
Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')

<37.0.0-r56
  • L
GHSA-8c42-7qj2-3j46

<37.0.0-r56
  • H
Information Exposure Through Caching

<37.0.0-r56
  • L
Improper Encoding or Escaping of Output

<37.0.0-r56
  • L
GHSA-qv9r-c865-cp47

<37.0.0-r56
  • L
Missing Release of Resource after Effective Lifetime

<37.0.0-r56
  • L
GHSA-hjcp-jmpx-g3qm

<37.0.0-r56
  • L
GHSA-v3jc-474w-2wm6

<37.0.0-r56
  • L
CVE-2026-54428

<37.0.0-r56
  • H
Missing Release of Resource after Effective Lifetime

<37.0.0-r56
  • L
GHSA-hf6x-8p5f-cgmf

<37.0.0-r56
  • L
CVE-2026-54399

<37.0.0-r56
  • L
NULL Pointer Dereference

<37.0.0-r56
  • L
GHSA-xx22-p4ch-683r

<37.0.0-r56
  • L
GHSA-mfg7-5gfp-c4w3

<37.0.0-r56
  • M
HTTP Request Smuggling

<37.0.0-r56
  • L
GHSA-f4v5-65jj-pcr2

<37.0.0-r56
  • L
GHSA-7p3p-8qv8-m2vh

<37.0.0-r56
  • L
GHSA-2fvj-hgj9-j2gr

<37.0.0-r56
  • L
Use of Non-Canonical URL Paths for Authorization Decisions

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • L
Information Exposure

<37.0.0-r56
  • L
Improper Input Validation

<37.0.0-r56
  • L
GHSA-93wv-jw9v-4972

<37.0.0-r56
  • C
Improper Handling of Alternate Encoding

<37.0.0-r56
  • L
GHSA-w7x5-g22v-xqhr

<37.0.0-r56
  • L
GHSA-c69g-56f8-xwqj

<37.0.0-r56
  • L
GHSA-4mp9-239f-g9hg

<37.0.0-r56
  • H
Resource Exhaustion

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • H
HTTP Request Smuggling

<37.0.0-r56
  • L
Improper Access Control

<37.0.0-r56
  • M
CRLF Injection

<37.0.0-r56
  • L
GHSA-gcjf-9mgh-3p7g

<37.0.0-r56
  • L
GHSA-6jqx-86gh-f27w

<37.0.0-r56
  • L
GHSA-q4f6-jm68-57ww

<37.0.0-r56
  • L
GHSA-mvh2-crg5-v77c

<37.0.0-r56
  • L
GHSA-6cqp-g7gg-8hr5

<37.0.0-r56
  • L
GHSA-jppx-w49h-x2qq

<37.0.0-r56
  • H
Allocation of Resources Without Limits or Throttling

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • L
GHSA-558v-64gr-wgg4

<37.0.0-r56
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<37.0.0-r56
  • L
GHSA-r7wm-3cxj-wff9

<37.0.0-r56
  • L
Not Failing Securely ('Failing Open')

<37.0.0-r56
  • L
GHSA-5gvw-p9qm-jgwh

<37.0.0-r56
  • L
GHSA-j92g-9f8w-j867

<37.0.0-r56
  • L
Incorrect Authorization

<37.0.0-r56
  • L
GHSA-mhm7-754m-9p8w

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • L
Incorrect Authorization

<37.0.0-r56
  • L
GHSA-9fxm-vc8v-hj55

<37.0.0-r56
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<37.0.0-r56
  • L
GHSA-rcqc-6cw3-h962

<37.0.0-r56
  • L
GHSA-5hh8-q8hv-fr38

<37.0.0-r56
  • L
GHSA-3g76-f9xq-8vp6

<37.0.0-r56
  • L
Incorrect Authorization

<37.0.0-r56
  • M
Allocation of Resources Without Limits or Throttling

<37.0.0-r56
  • L
GHSA-j288-q9x7-2f5v

<37.0.0-r56
  • L
Incomplete Blacklist

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • L
GHSA-355h-qmc2-wpwf

<37.0.0-r56
  • L
GHSA-hgj6-7826-r7m5

<37.0.0-r56
  • L
Improperly Controlled Modification of Dynamically-Determined Object Attributes

<37.0.0-r56
  • L
GHSA-5jmj-h7xm-6q6v

<37.0.0-r56
  • L
GHSA-j3rv-43j4-c7qm

<37.0.0-r56
  • L
GHSA-h46c-h94j-95f3

<37.0.0-r56
  • C
HTTP Request Smuggling

<37.0.0-r56
  • L
GHSA-3wrr-7qpf-2prh

<37.0.0-r56
  • L
GHSA-78wr-2p64-hpwj

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • L
Server-Side Request Forgery (SSRF)

<37.0.0-r56
  • L
Uncontrolled Recursion

<37.0.0-r56
  • L
GHSA-rmj7-2vxq-3g9f

<37.0.0-r56
  • L
Stack-based Buffer Overflow

<37.0.0-r56
  • L
Incomplete Blacklist

<37.0.0-r56
  • L
GHSA-337m-mw94-2v6g

<37.0.0-r56
  • L
GHSA-47qp-hqvx-6r3f

<37.0.0-r56
  • L
GHSA-2r2c-cx56-8933

<37.0.0-r56
  • L
Uncontrolled Recursion

<37.0.0-r56
  • L
GHSA-5x3r-wrvg-rp6q

<37.0.0-r56
  • L
GHSA-563q-j3cm-6jxm

<37.0.0-r56
  • L
GHSA-hvcg-qmg6-jm4c

<37.0.0-r56
  • L
GHSA-c2gf-v879-257j

<37.0.0-r56
  • L
HTTP Request Smuggling

<37.0.0-r56
  • M
Allocation of Resources Without Limits or Throttling

<37.0.0-r56
  • L
Resource Exhaustion

<37.0.0-r56
  • H
Resource Exhaustion

<37.0.0-r56
  • L
GHSA-c653-97m9-rcg9

<37.0.0-r56
  • L
Improper Access Control

<37.0.0-r56
  • L
GHSA-x4gw-5cx5-pgmh

<37.0.0-r56
  • L
Improper Verification of Cryptographic Signature

<37.0.0-r56
  • L
GHSA-5pvg-856g-cp85

<37.0.0-r56
  • L
GHSA-3qp7-7mw8-wx86

<37.0.0-r56
  • L
Use of Insufficiently Random Values

<37.0.0-r56
  • C
Insufficient Verification of Data Authenticity

<37.0.0-r56
  • L
Information Exposure

<37.0.0-r56
  • L
GHSA-xmv7-r254-6q78

<37.0.0-r56
  • L
GHSA-676x-f7gg-47vc

<37.0.0-r56
  • L
Allocation of Resources Without Limits or Throttling

<37.0.0-r56
  • L
GHSA-w573-9ffj-6ff9

<37.0.0-r56
  • C
Insufficient Verification of Data Authenticity

<37.0.0-r56
  • L
GHSA-rwm7-x88c-3g2p

<37.0.0-r9
  • L
GHSA-fmxf-pm6p-7xgm

<37.0.0-r9
  • L
Missing Release of Resource after Effective Lifetime

<37.0.0-r9
  • L
GHSA-45q3-82m4-75jr

<37.0.0-r9
  • L
Information Exposure

<37.0.0-r9
  • H
HTTP Response Splitting

<37.0.0-r9
  • H
CRLF Injection

<37.0.0-r8
  • L
CVE-2024-30171

<37.0.0-r8
  • L
CVE-2024-29857

<37.0.0-r8
  • L
GHSA-8xfc-gm6g-vgpv

<37.0.0-r8
  • L
GHSA-443w-3rq3-5m5h

<37.0.0-r8
  • L
CVE-2024-34447

<37.0.0-r8
  • H
Resource Exhaustion

<37.0.0-r8
  • L
GHSA-hr8g-6v94-x4m9

<37.0.0-r8
  • L
GHSA-4h8f-2wvx-gg5w

<37.0.0-r8
  • M
Improper Certificate Validation

<37.0.0-r8
  • L
GHSA-v435-xc8x-wvr9

<37.0.0-r8
  • L
GHSA-rgrr-p7gp-5xj7

<37.0.0-r8
  • L
GHSA-5jpm-x58v-624v

<37.0.0-r8
  • L
GHSA-jfg9-48mv-9qgx

<37.0.0-r8
  • L
CVE-2024-29025

<37.0.0-r8
  • L
GHSA-2c5c-chwr-9hqw

<37.0.0-r8
  • L
Allocation of Resources Without Limits or Throttling

<37.0.0-r8
  • L
GHSA-f5fw-25gw-5m92

<37.0.0-r6
  • L
Creation of Temporary File With Insecure Permissions

<37.0.0-r6
  • L
GHSA-mj4r-2hfc-f8p6

<37.0.0-r5
  • L
Resource Exhaustion

<37.0.0-r5
  • L
Resource Exhaustion

<37.0.0-r4
  • L
GHSA-f6hv-jmp6-3vwv

<37.0.0-r4
  • C
Improper Input Validation

<37.0.0-r3
  • L
GHSA-cm33-6792-r9fm

<37.0.0-r3
  • L
Allocation of Resources Without Limits or Throttling

<37.0.0-r2
  • L
GHSA-98qh-xjc8-98pq

<37.0.0-r2
  • C
HTTP Request Smuggling

<37.0.0-r1
  • L
GHSA-38f8-5428-x5cv

<37.0.0-r1
  • L
Integer Overflow or Wraparound

<37.0.0-r1
  • L
GHSA-m4cv-j2px-7723

<37.0.0-r1
  • L
GHSA-v8h7-rr48-vmmv

<37.0.0-r1
  • L
CRLF Injection

<37.0.0-r1
  • L
GHSA-xxqh-mfjm-7mv9

<37.0.0-r1
  • C
HTTP Request Smuggling

<37.0.0-r1
  • L
GHSA-57rv-r2g8-2cj3

<37.0.0-r1
  • H
HTTP Request Smuggling

<37.0.0-r1
  • L
GHSA-6fmv-xxpf-w3cw

<37.0.0-r0
  • H
CVE-2025-67030

<37.0.0-r0
  • L
CVE-2026-0636

<36.0.0-r15
  • L
CVE-2026-5588

<36.0.0-r15
  • L
GHSA-xw5c-jc7x-gf75

<36.0.0-r15
  • M
Cross-site Request Forgery (CSRF)

<36.0.0-r15
  • L
GHSA-c3fc-8qff-9hwx

<36.0.0-r15
  • L
Information Exposure

<36.0.0-r15
  • L
Information Exposure Through Server Log Files

<36.0.0-r15
  • L
GHSA-5qcv-4rpc-jp93

<36.0.0-r15
  • L
GHSA-cmxv-58fp-fm3g

<36.0.0-r15
  • H
Improper Encoding or Escaping of Output

<36.0.0-r15
  • L
GHSA-wg6q-6289-32hp

<36.0.0-r15
  • L
GHSA-wf66-mphr-4c4r

<36.0.0-r15
  • L
Race Condition

<36.0.0-r15
  • L
GHSA-h383-gmxw-35v2

<36.0.0-r15
  • L
CVE-2026-5598

<36.0.0-r15
  • L
GHSA-p93r-85wp-75v3

<36.0.0-r15
  • L
GHSA-3pxv-7cmr-fjr4

<36.0.0-r13
  • H
Improper Encoding or Escaping of Output

<36.0.0-r13
  • L
GHSA-72hv-8253-57qq

<37.0.0-r56
  • H
Resource Exhaustion

<34.0.0-r6
  • L
CVE-2024-25638

<37.0.0-r14
  • C
HTTP Request Smuggling

<34.0.0-r6
  • H
CVE-2022-41404

<36.0.0-r0
  • L
GHSA-grg4-wf29-r9vv

<34.0.0-r6
  • L
GHSA-wjpw-4j6x-6rwh

<37.0.0-r56
  • M
Improper Input Validation

<37.0.0-r56
  • L
GHSA-jr6h-r7vg-f9mc

<36.0.0-r0
  • L
GHSA-9vjp-v76f-g363

<34.0.0-r6
  • H
Resource Exhaustion

<34.0.0-r6
  • L
GHSA-cqqj-4p63-rrmm

<34.0.0-r6
  • L
GHSA-cfxw-4h78-h7fw

<37.0.0-r14
  • L
GHSA-w9fj-cfpg-grvv

<36.0.0-r12
  • H
Allocation of Resources Without Limits or Throttling

<36.0.0-r12
  • L
GHSA-pwqr-wmgm-9rr8

<36.0.0-r11
  • L
HTTP Request Smuggling

<36.0.0-r11
  • L
GHSA-vx9q-rhv9-3jvg

<36.0.0-r10
  • H
Out-of-bounds Read

<36.0.0-r10
  • H
Information Exposure Through Log Files

<36.0.0-r5
  • L
GHSA-crhr-qqj8-rpxc

<36.0.0-r5
  • L
GHSA-c87w-642h-m97h

<36.0.0-r3
  • L
Arbitrary Code Injection

<36.0.0-r3
  • L
GHSA-xxh7-fcf3-rj7f

<36.0.0-r4
  • L
Resource Exhaustion

<36.0.0-r4
  • L
GHSA-rp46-r563-jrc7

<36.0.0-r1
  • L
Arbitrary Code Injection

<36.0.0-r1
  • M
HTTP Request Smuggling

<35.0.1-r8
  • L
GHSA-cphf-4846-3xx9

<35.0.1-r8
  • L
GHSA-grr4-wv38-f68w

<35.0.1-r5
  • H
Uncontrolled Recursion

<35.0.1-r5
  • L
GHSA-56h3-78gp-v83r

<35.0.1-r5
  • H
Out-of-bounds Write

<35.0.1-r5
  • H
Uncontrolled Recursion

<35.0.1-r5
  • H
Out-of-bounds Write

<35.0.1-r5
  • L
GHSA-q6g2-g7f3-rr83

<35.0.1-r5
  • H
Out-of-bounds Write

<35.0.1-r5
  • L
GHSA-x27m-9w8j-5vcw

<35.0.1-r5
  • L
GHSA-7rf3-mqpx-h7xg

<35.0.1-r5
  • C
Deserialization of Untrusted Data

<35.0.1-r1
  • L
GHSA-fp5r-v3w9-4333

<35.0.1-r1
  • H
Deserialization of Untrusted Data

<35.0.1-r1
  • L
GHSA-f7vh-qwp3-x37m

<35.0.1-r1
  • L
GHSA-7g45-4rm6-3mm3

<35.0.0-r0
  • L
Out-of-bounds Write

<37.0.0-r56
  • C
SQL Injection

<35.0.1-r1
  • H
Files or Directories Accessible to External Parties

<35.0.0-r0
  • L
GHSA-fg2v-w576-w4v3

<37.0.0-r56
  • L
Improper Input Validation

<37.0.0-r56
  • L
GHSA-gvpg-vgmx-xg6w

<37.0.0-r56
  • L
GHSA-h4h5-3hr4-j3g2

<38.0.0-r0
  • L
GHSA-7r82-7xv7-xcpj

<35.0.1-r1
  • L
GHSA-mvr2-9pj6-7w5j

<35.0.1-r1
  • L
GHSA-r7pg-v2c8-mfg3

<37.0.0-r56
  • L
GHSA-g5ww-5jh7-63cx

<35.0.0-r0
  • L
Deserialization of Untrusted Data

<37.0.0-r56
  • H
CVE-2023-52428

<37.0.0-r56
  • L
GHSA-mmwx-rj87-vfgr

<34.0.0-r6
  • L
GHSA-2qrg-x229-3v8q

<35.0.1-r1
  • M
Allocation of Resources Without Limits or Throttling

<37.0.0-r56
  • H
Deserialization of Untrusted Data

<37.0.0-r56
  • L
GHSA-cj7v-27pg-wf7q

<37.0.0-r56
  • H
Uncontrolled Recursion

<37.0.0-r56
  • M
CVE-2024-6763

<35.0.0-r0
  • M
Improper Handling of Length Parameter Inconsistency

<37.0.0-r56
  • L
GHSA-xjp4-hw94-mvp5

<37.0.0-r56
  • L
GHSA-4gg5-vx3j-xwc7

<38.0.0-r0
  • H
Deserialization of Untrusted Data

<35.0.1-r1
  • L
GHSA-qh8g-58pp-2wxh

<35.0.0-r0
  • M
Allocation of Resources Without Limits or Throttling

<35.0.1-r1
  • H
Deserialization of Untrusted Data

<35.0.1-r1
  • L
Incorrect Permission Assignment for Critical Resource

<38.0.0-r0
  • L
GHSA-65fg-84f6-3jq3

<35.0.1-r1
  • L
GHSA-wf8f-6423-gfxg

<37.0.0-r56
  • L
Information Exposure

<37.0.0-r56
  • L
GHSA-84h7-rjj3-6jx4

<35.0.1-r1
  • M
Improper Input Validation

<37.0.0-r56
  • H
CVE-2022-3171

<38.0.0-r0
  • L
CRLF Injection

<35.0.1-r1
  • L
GHSA-wrvw-hg22-4m67

<38.0.0-r0
  • L
GHSA-gwrp-pvrq-jmwv

<35.0.1-r1
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<37.0.0-r56
  • M
CVE-2020-13956

<35.0.1-r1
  • L
GHSA-493p-pfq6-5258

<37.0.0-r56
  • M
Directory Traversal

<35.0.1-r1
  • L
GHSA-77rm-9x9h-xj3g

<34.0.0-r6
  • M
NULL Pointer Dereference

<34.0.0-r6
  • H
CVE-2022-3509

<35.0.0-r0
  • L
GHSA-hmr7-m48g-48f6

<37.0.0-r56
  • L
GHSA-4g9r-vxhx-9pgx

<37.0.0-r56
  • L
Out-of-bounds Write

<37.0.0-r56
  • H
CVE-2022-3510

<38.0.0-r0
  • L
GHSA-crjg-w57m-rqqf

<34.0.0-r6
  • L
GHSA-xwmg-2g98-w7v9

<37.0.0-r56
  • L
GHSA-58qw-p7qm-5rvh

<37.0.0-r56
  • L
GHSA-4265-ccf5-phj5

<37.0.0-r56
  • M
CVE-2021-22569

<38.0.0-r0
  • L
GHSA-w9p3-5cr8-m3jj

<35.0.1-r1
  • L
CVE-2025-48734

<37.0.0-r56
  • H
Out-of-bounds Write

<38.0.0-r0
  • L
GHSA-9w38-p64v-xpmv

<37.0.0-r56
  • L
GHSA-5mg8-w23w-74h3

<38.0.0-r0
  • L
GHSA-cgp8-4m63-fhh5

<37.0.0-r56
  • L
GHSA-rhrv-645h-fjfh

<37.0.0-r56
  • L
Uncontrolled Recursion

<37.0.0-r56
  • L
GHSA-735f-pc8j-v9w8

<38.0.0-r0
  • H
Out-of-bounds Write

<37.0.0-r56
  • L
GHSA-wxr5-93ph-8wr9

<37.0.0-r56
  • M
Improper Certificate Validation

<35.0.1-r2
  • L
GHSA-vc5p-v9hr-52mj

<35.0.1-r2
  • L
CVE-2025-8916

<34.0.0-r6
  • H
HTTP Request Smuggling

<34.0.0-r4
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<34.0.0-r3
  • H
Allocation of Resources Without Limits or Throttling

<34.0.0-r1
  • L
CVE-2025-22227

<33.0.0-r8
  • L
CVE-2025-27817

<33.0.0-r4
  • C
Deserialization of Untrusted Data

<32.0.1-r2
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<35.0.1-r1
  • H
Allocation of Resources Without Limits or Throttling

<37.0.0-r0
  • H
Integer Overflow or Wraparound

<37.0.0-r0
  • L
GHSA-g2fg-mr77-6vrm

<34.0.0-r6
  • H
Improper Certificate Validation

<32.0.1-r1
  • C
Incorrect Permission Assignment for Critical Resource

<35.0.1-r1
  • H
Allocation of Resources Without Limits or Throttling

<37.0.0-r0
  • L
GHSA-qcwq-55hx-v3vh

<37.0.0-r0
  • L
GHSA-pqr6-cmr2-h8hf

<37.0.0-r0
  • H
Resource Exhaustion

<34.0.0-r6
  • M
File and Directory Information Exposure

<35.0.1-r1
  • H
CVE-2023-50298

<32.0.1-r1
  • L
GHSA-vx85-mj8c-4qm6

<35.0.1-r1
  • M
Race Condition

<32.0.1-r1
  • L
GHSA-55g7-9cwv-5qfv

<37.0.0-r0
  • L
GHSA-fjpj-2g6w-x25r

<37.0.0-r0
  • L
GHSA-8ffc-79xg-29w8

<35.0.1-r1
  • L
CVE-2024-36114

<32.0.1-r1
  • H
Integer Overflow or Wraparound

<37.0.0-r0
  • L
GHSA-rj7p-rfgp-852x

<35.0.1-r1
  • L
CVE-2025-24970

<32.0.0-r5
  • C
Arbitrary Code Injection

<32.0.1-r1
  • L
Improper Privilege Management

<31.0.0-r2
  • M
Allocation of Resources Without Limits or Throttling

<31.0.0-r1
  • M
CVE-2024-45384

<30.0.1-r0