Vulnerability DB

Detailed information and remediation guidance for known vulnerabilities.
Find out if you have vulnerabilities that put you at risk Test your code
Vulnerability Affects Type Published
  • M
Cross-site Scripting (XSS)
jplayer <2.3.2 npm 21 Aug, 2018
  • M
Cross-site Scripting (XSS)
jplayer <2.2.20 npm 21 Aug, 2018
  • H
Privilege Escalation
flintcms <1.1.10 npm 19 Aug, 2018
  • M
Arbitrary String Injection
dojox <1.10.10 || >=1.11.0 <1.11.6 || >=1.12.0 <1.12.4 || >=1.13.0 <1.13.1 npm 19 Aug, 2018
  • M
Cross-site Scripting (XSS)
dojo <1.10.10 || >=1.11.0 <1.11.6 || >=1.12.0 <1.12.4 || >=1.13.0 <1.13.1 npm 19 Aug, 2018
  • M
Access Restriction Bypass
angular-jwt <0.1.10 npm 16 Aug, 2018
  • M
Improper Authorization
aedes <0.35.1 npm 08 Aug, 2018
  • M
Cross-site Scripting (XSS)
exceljs <1.6.0 npm 07 Aug, 2018
  • M
Regular Expression Denial of Service (ReDoS)
slugify <1.3.1 npm 05 Aug, 2018
  • M
Cross-site Scripting (XSS)
vue <2.5.17 npm 02 Aug, 2018
  • M
Cross-site Scripting (XSS)
react-dom >=16.0.0 <16.0.1,>=16.1.0 <16.1.2,>=16.2.0 <16.2.1,>=16.3.0 <16.3.3,>=16.4.0 <16.4.2 npm 02 Aug, 2018
  • M
Cross-site Scripting (XSS)
preact-render-to-string <3.7.2 npm 02 Aug, 2018
  • H
Open Redirect
url-parse <1.4.3 npm 31 Jul, 2018
  • M
Information Exposure
superagent <3.8.1 npm 31 Jul, 2018
  • M
Time of Check Time of Use (TOCTOU)
chownr * npm 31 Jul, 2018
  • L
Uninitialized Memory Exposure
utile * npm 24 Jul, 2018
  • L
Uninitialized Memory Exposure
put * npm 24 Jul, 2018
  • L
Directory Traversal
file-static-server * npm 24 Jul, 2018
  • H
Cross-site Scripting (XSS)
statics-server * npm 23 Jul, 2018
  • L
Prototype Pollution
extend <2.0.2 || >=3.0.0 <3.0.2 npm 23 Jul, 2018
  • M
Directory Traversal
markdown-pdf <9.0.0 npm 23 Jul, 2018
  • M
Insecure Randomness
cryptiles <4.1.2 npm 19 Jul, 2018
  • M
Cross-site Scripting (XSS)
angular-redactor * npm 19 Jul, 2018
  • H
Malicious Package
eslint-scope =3.7.2 npm 12 Jul, 2018
  • H
Malicious Package
eslint-config-airbnb-standard >=2.0.0 <2.1.2 npm 13 Jul, 2018
  • H
Malicious Package
eslint-scope =3.7.2 npm 12 Jul, 2018
  • H
Denial of Service (DoS)
memjs * npm 01 Jul, 2018
  • H
Directory Traversal
buttle * npm 01 Jul, 2018
  • M
Cross-site Scripting (XSS)
medis * npm 28 Jun, 2018
  • H
Denial of Service (DoS)
mailparser-mit * npm 25 Jun, 2018