0.195.0
5 months ago
2 months ago
Known vulnerabilities in the @grackle-ai/server package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
@grackle-ai/server is a Grackle server orchestrator — spawns and wires core (gRPC), web-server (HTTP), MCP, and PowerLine Affected versions of this package are vulnerable to Origin Validation Error via the How to fix Origin Validation Error? Upgrade | <0.70.3 |
@grackle-ai/server is a Grackle server orchestrator — spawns and wires core (gRPC), web-server (HTTP), MCP, and PowerLine Affected versions of this package are vulnerable to Improper Check for Unusual or Exceptional Conditions in the How to fix Improper Check for Unusual or Exceptional Conditions? Upgrade | <0.70.6 |
@grackle-ai/server is a Grackle server orchestrator — spawns and wires core (gRPC), web-server (HTTP), MCP, and PowerLine Affected versions of this package are vulnerable to Protection Mechanism Failure due to missing security headers in HTTP responses. An attacker can compromise the security of client browsers by exploiting the absence of How to fix Protection Mechanism Failure? Upgrade | <0.70.5 |
@grackle-ai/server is a Grackle server orchestrator — spawns and wires core (gRPC), web-server (HTTP), MCP, and PowerLine Affected versions of this package are vulnerable to Sensitive Cookie in HTTPS Session Without "Secure" Attribute in the How to fix Sensitive Cookie in HTTPS Session Without "Secure" Attribute? Upgrade | <0.70.5 |