Vulnerability DB

Detailed information and remediation guidance for known vulnerabilities.
Find out if you have vulnerabilities that put you at risk Test your code
Vulnerability Affects Type Published
  • M
Cross-site Scripting (XSS)
react-tooltip <3.8.1 npm 13 Sep, 2018
  • M
Arbitrary Command Injection
ps <1.0.0 npm 09 Sep, 2018
  • H
Arbitrary Command Injection
ascii-art <1.4.4 npm 09 Sep, 2018
  • M
Cross-site Scripting (XSS)
dojo <1.14 npm 06 Sep, 2018
  • H
Arbitrary Command Injection
samsung-remote <1.3.5 npm 05 Sep, 2018
  • M
Cross-site Scripting (XSS)
editor.md * npm 05 Sep, 2018
  • H
Directory Traversal
simplehttpserver <0.2.1 npm 05 Sep, 2018
  • H
Regular Expression Denial of Service (ReDoS)
mosca <2.8.2 npm 30 Aug, 2018
  • M
Denial of Service (DoS)
mem <4.0.0 npm 29 Aug, 2018
  • H
Arbitrary Code Execution
electron >=1.7.0 <1.7.16 || >=1.8.0 <1.8.8 || >=2.0.0 <2.0.8 || >=3.0.0-beta6 <3.0.0-beta.7 npm 27 Aug, 2018
  • M
Cross-site Scripting (XSS)
mergely <4.0.5 npm 27 Aug, 2018
  • H
Arbitrary Command Injection
egg-scripts <2.8.1 npm 27 Aug, 2018
  • H
Directory Traversal
serve <7.1.3 npm 21 Aug, 2018
  • H
Directory Traversal
ponse <2.0.3 npm 21 Aug, 2018
  • H
Cross-site Scripting (XSS)
node-red <0.18.6 npm 21 Aug, 2018
  • M
Cross-site Scripting (XSS)
m-server <1.4.2 npm 21 Aug, 2018
  • H
Privilege Escalation
express-cart <1.1.7 npm 21 Aug, 2018
  • H
Arbitrary Command Injection
entitlements <1.3.0 npm 21 Aug, 2018
  • M
Cross-site Scripting (XSS)
buttle * npm 21 Aug, 2018
  • M
Cross-site Scripting (XSS)
jplayer <2.3.0 npm 21 Aug, 2018
  • M
Cross-site Scripting (XSS)
jplayer <2.3.2 npm 21 Aug, 2018
  • M
Cross-site Scripting (XSS)
jplayer <2.2.20 npm 21 Aug, 2018
  • H
Privilege Escalation
flintcms <1.1.10 npm 19 Aug, 2018
  • M
Arbitrary String Injection
dojox <1.10.10 || >=1.11.0 <1.11.6 || >=1.12.0 <1.12.4 || >=1.13.0 <1.13.1 npm 19 Aug, 2018
  • M
Cross-site Scripting (XSS)
dojo <1.10.10 || >=1.11.0 <1.11.6 || >=1.12.0 <1.12.4 || >=1.13.0 <1.13.1 npm 19 Aug, 2018
  • M
Access Restriction Bypass
angular-jwt <0.1.10 npm 16 Aug, 2018
  • M
Improper Authorization
aedes <0.35.1 npm 08 Aug, 2018
  • M
Cross-site Scripting (XSS)
exceljs <1.6.0 npm 07 Aug, 2018
  • M
Regular Expression Denial of Service (ReDoS)
slugify <1.3.1 npm 05 Aug, 2018
  • M
Cross-site Scripting (XSS)
vue <2.5.17 npm 02 Aug, 2018