Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • H
Prototype Pollution
linkify-react<4.3.2npm7 Aug 2025
  • H
Prototype Pollution
linkifyjs<4.3.2npm7 Aug 2025
  • M
Insertion of Sensitive Information into Log File
kuzu<0.8.2npm7 Aug 2025
  • M
Allocation of Resources Without Limits or Throttling
bento4*npm7 Aug 2025
  • H
Command Injection
@anthropic-ai/claude-code<1.0.20npm7 Aug 2025
  • M
Symlink Attack
tmp<0.2.4npm7 Aug 2025
  • M
Regular Expression Denial of Service (ReDoS)
@actions/glob*npm6 Aug 2025
  • L
Directory Traversal
vvvebjs*npm6 Aug 2025
  • M
Directory Traversal
ipx<1.3.2>=2.0.0-0 <2.1.1>=3.0.0 <3.1.1npm6 Aug 2025
  • H
Prototype Pollution
js-toml<1.0.2npm6 Aug 2025
  • C
Malicious Package
epic-games-nav-share*npm4 Aug 2025
  • C
Malicious Package
epic-fortnite-shared-values*npm4 Aug 2025
  • H
Prototype Pollution
@nyariv/sandboxjs<0.8.24npm4 Aug 2025
  • C
Arbitrary Command Injection
@nestjs/devtools-integration<0.2.1npm3 Aug 2025
  • C
Improper Neutralization of Input Used for LLM Prompting
@modelcontextprotocol/server-slack*npm1 Aug 2025
  • C
Malicious Package
dhei-0731-pkg2*npm1 Aug 2025
  • M
Server-side Request Forgery (SSRF)
webfinger.js<2.8.1npm1 Aug 2025
  • H
Improper Authorization
@finos/git-proxy<1.19.2npm31 Jul 2025
  • H
Information Exposure
@finos/git-proxy<1.19.2npm31 Jul 2025
  • H
Incorrect Authorization
@finos/git-proxy<1.19.2npm31 Jul 2025
  • H
Misinterpretation of Input
@finos/git-proxy<1.19.2npm31 Jul 2025
  • H
Improper Neutralization of Input Used for LLM Prompting
@google/gemini-cli<0.1.14npm31 Jul 2025
  • M
Improper Check for Unusual or Exceptional Conditions
solady>=0.0.125 <0.1.24npm31 Jul 2025
  • C
Malicious Package
@hypervector/hypervector-tbank-test*npm30 Jul 2025
  • C
Malicious Package
@hypervector/hypervector-test*npm30 Jul 2025
  • C
Malicious Package
@platform-ui-storybook/copy-button*npm30 Jul 2025
  • C
Malicious Package
@sme-configs/karma-coverage*npm30 Jul 2025
  • C
Malicious Package
@video-platform/core*npm30 Jul 2025
  • C
Malicious Package
@video-platform/react-core*npm30 Jul 2025
  • C
Malicious Package
@video-platform/react-osd*npm30 Jul 2025