Vulnerability DB

Detailed information and remediation guidance for known vulnerabilities.
Find out if you have vulnerabilities that put you at risk Test your code
Vulnerability Affects Type Published
  • H
Arbitrary Code Injection
wxchangba * npm 14 Aug, 2019
  • H
Malicious Package
device-mqtt =1.0.11 npm 08 Aug, 2019
  • H
Malicious Package
pensi-scheduler =1.1.3 npm 08 Aug, 2019
  • H
Malicious Package
pyramid-proportion =1.0.5 npm 08 Aug, 2019
  • H
Malicious Package
slush-fullstack-framework =0.9.2 npm 08 Aug, 2019
  • H
Malicious Package
zemen =0.0.5 npm 07 Aug, 2019
  • H
Malicious Package
jquery-airload =0.2.5 npm 07 Aug, 2019
  • H
Malicious Package
ngx-context-menu =0.0.26 npm 07 Aug, 2019
  • M
Denial of Service (DoS)
grpc-ts-health-check <2.0.0 npm 06 Aug, 2019
  • H
Malicious Package
cal_rd * npm 06 Aug, 2019
  • H
Malicious Package
sailclothjs 1.2.6 npm 06 Aug, 2019
  • H
Malicious Package
uploader-plugin 1.0.2 npm 06 Aug, 2019
  • M
Cross-site Scripting (XSS)
select2 * npm 04 Aug, 2019
  • H
Cross-site Scripting (XSS)
editor.md * npm 04 Aug, 2019
  • M
Cross-site Scripting (XSS)
nodebb <0.8.2 npm 01 Aug, 2019
  • H
Remote Code Execution (RCE)
haraka <2.8.20 npm 01 Aug, 2019
  • L
DNS Rebinding
webtorrent <0.105.2 npm 31 Jul, 2019
  • M
Cross-site Scripting (XSS)
min-http-server * npm 31 Jul, 2019
  • H
Privilege Escalation
electron <0.33.5 npm 30 Jul, 2019
  • H
Arbitrary Command Injection
node-wifi * npm 30 Jul, 2019
  • H
Arbitrary Code Execution
domokeeper >=0.0.0 npm 29 Jul, 2019
  • M
Account Enumeration
parse-server <3.6.0 npm 29 Jul, 2019
  • H
Denial of Service (DoS)
parse-server <3.4.1 npm 29 Jul, 2019
  • M
Cross-site Scripting (XSS)
plotly.js <1.10.4,>=1.11.0 <1.16.0 npm 28 Jul, 2019
  • M
Cross-site Scripting (XSS)
@risingstack/protect * npm 25 Jul, 2019
  • M
Cross-site Scripting (XSS)
http-file-server * npm 24 Jul, 2019
  • H
Cross-site Scripting (XSS)
console-feed <2.8.10 npm 24 Jul, 2019
  • M
Directory Traversal
@vivaxy/here <3.2.2 npm 24 Jul, 2019
  • H
Malicious Package
json-serializer =2.0.10 npm 24 Jul, 2019
  • H
Arbitrary Code Injection
tomato * npm 24 Jul, 2019