Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • C
Embedded Malicious Code
@zapier/stubtree=0.1.2=0.1.3=0.1.4npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/secret-scrubber=1.1.3=1.1.4=1.1.5npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/mcp-integration=3.0.1=3.0.2=3.0.3npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/eslint-plugin-zapier=11.0.3=11.0.4=11.0.5npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/browserslist-config-zapier=1.0.3=1.0.4=1.0.5npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/babel-preset-zapier=6.4.1=6.4.2=6.4.3npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/ai-actions-react=0.1.12=0.1.13=0.1.14npm24 Nov 2025
  • C
Embedded Malicious Code
@zapier/ai-actions=0.1.18=0.1.19=0.1.20npm24 Nov 2025
  • C
Embedded Malicious Code
@mparpaillon/page=1.0.1npm24 Nov 2025
  • C
Embedded Malicious Code
bestgpiocontroller=1.0.10npm24 Nov 2025
  • C
Embedded Malicious Code
@postman/secret-scanner-wasm=2.1.2=2.1.3=2.1.4npm24 Nov 2025
  • C
Malicious Package
chai-async-chain*npm24 Nov 2025
  • C
Malicious Package
@validate-pubkey/hex*npm24 Nov 2025
  • C
Malicious Package
tailwind-inquirer*npm24 Nov 2025
  • C
Malicious Package
tailwind-pulse*npm24 Nov 2025
  • C
Malicious Package
parse-session*npm24 Nov 2025
  • C
Malicious Package
loliloli*npm24 Nov 2025
  • C
Malicious Package
hellospa*npm24 Nov 2025
  • C
Malicious Package
token-verify-passport*npm24 Nov 2025
  • C
Malicious Package
hash-guard*npm24 Nov 2025
  • C
Malicious Package
lululemon-b2b-utils*npm24 Nov 2025
  • C
Malicious Package
lion-second-package*npm24 Nov 2025
  • C
Malicious Package
base62-58x*npm24 Nov 2025
  • H
Use of Cache Containing Sensitive Information
@workos-inc/authkit-nextjs<2.11.1npm23 Nov 2025
  • C
Nonce Reuse
@hpke/core<1.7.5npm23 Nov 2025
  • H
Command Injection
@anthropic-ai/claude-code<2.0.31npm21 Nov 2025
  • C
Arbitrary Code Injection
md-to-pdf<5.2.5npm21 Nov 2025
  • H
Use of Incorrectly-Resolved Name or Reference
zx<8.1.1npm21 Nov 2025
  • C
Malicious Package
@vreden-team/baileys*npm21 Nov 2025
  • H
Arbitrary Code Injection
@anthropic-ai/claude-code<1.0.39npm21 Nov 2025