See the full list of npm packages compromised in the "Shai-Hulud supply chain attack – Sep 2025" [View compromised packages].
Find out if you have vulnerabilities that put you at risk
Test your applicationsVULNERABILITY | AFFECTS | TYPE | PUBLISHED |
---|---|---|---|
| thunderbird[,128.13)[140.0-b1,140.1)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox-ESR[,115.26)[128.0,128.13)[140.1-b1,140.1) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,128.13)[140.0-b1,140.1)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox-ESR[,128.13)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,140.1)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox-ESR[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,140.1)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox-ESR[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,140.1)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox-ESR[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,140.1)[141.0-b1,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox-ESR[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| thunderbird[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| Firefox[,141.0) | Unmanaged (C/C++) | 24 Jul 2025 |
| chromium[,138.0.7204.157) | Unmanaged (C/C++) | 24 Jul 2025 |
| ImageMagick/ImageMagick[,7.1.2-0) | Unmanaged (C/C++) | 24 Jul 2025 |
| bloomberg/comdb2[0,] | Unmanaged (C/C++) | 23 Jul 2025 |
| bloomberg/comdb2[0,] | Unmanaged (C/C++) | 23 Jul 2025 |
| freeipa[,4.12.4) | Unmanaged (C/C++) | 23 Jul 2025 |
| bloomberg/comdb2[0,] | Unmanaged (C/C++) | 23 Jul 2025 |
| bloomberg/comdb2[0,] | Unmanaged (C/C++) | 23 Jul 2025 |
| gdk-pixbuf[0,2.43.2) | Unmanaged (C/C++) | 23 Jul 2025 |