Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • C
Malicious Package
tailwind-view-ui*npm17 Nov 2025
  • C
Malicious Package
bcryptkit*npm17 Nov 2025
  • C
Malicious Package
react-confetti-modern*npm17 Nov 2025
  • C
Malicious Package
chai-proxify*npm17 Nov 2025
  • C
Malicious Package
integrator-filescrypt2025*npm17 Nov 2025
  • C
Malicious Package
integrator-2829*npm17 Nov 2025
  • C
Malicious Package
applicationooks21*npm17 Nov 2025
  • C
Malicious Package
dsidospsodlks*npm17 Nov 2025
  • C
Malicious Package
react-native-animated-shine*npm17 Nov 2025
  • C
Malicious Package
application-phskck*npm17 Nov 2025
  • C
Malicious Package
signals-embed*npm17 Nov 2025
  • C
Malicious Package
integrator-2830*npm17 Nov 2025
  • C
Malicious Package
tailwind-styled-scrollbar*npm17 Nov 2025
  • M
Resource Injection
@evershop/evershop*npm16 Nov 2025
  • C
Prototype Pollution
expr-eval*npm16 Nov 2025
  • C
Prototype Pollution
expr-eval-fork<3.0.0npm16 Nov 2025
  • C
Protection Mechanism Failure
chrome-devtools-frontend<1.0.1510180npm16 Nov 2025
  • H
Protection Mechanism Failure
chrome-devtools-frontend<1.0.1510180npm16 Nov 2025
  • H
Insufficient Session Expiration
flowise-ui<3.0.9npm16 Nov 2025
  • H
Insufficient Session Expiration
flowise<3.0.10npm16 Nov 2025
  • H
Unverified Password Change
flowise-ui<3.0.9npm16 Nov 2025
  • H
Unverified Password Change
flowise<3.0.10npm16 Nov 2025
  • H
Unverified Password Change
flowise-ui<3.0.9npm16 Nov 2025
  • H
Unverified Password Change
flowise<3.0.10npm16 Nov 2025
  • H
Uncontrolled Search Path Element
aws-advanced-nodejs-wrapper<2.0.1npm16 Nov 2025
  • H
Incorrect Authorization
@apollo/composition<2.9.5>=2.10.0-alpha.0 <2.10.4>=2.11.0-preview.0 <2.11.5-preview.0>=2.12.0-preview.0 <2.12.1npm16 Nov 2025
  • M
Cross-site Scripting (XSS)
@directus/app<14.1.0npm14 Nov 2025
  • M
Access Control Bypass
@directus/api<32.0.2npm14 Nov 2025
  • M
Information Exposure
@directus/api<32.0.0npm14 Nov 2025
  • H
Insertion of Sensitive Information Into Sent Data
@directus/api<32.0.0npm14 Nov 2025