VulnSea

Tagged “npm”

CVEs tagged npm, newest first.

1010 CVEsRSS

CVE-2026-49864High
1mo ago

wetty provides terminal access in browser over http/https

wetty provides terminal access in browser over http/https. Prior to version 3.0.4, the wetty client decodes a base64 filename from the file-download escape sequence and interpolates it raw into a Toastify HTML string (`escapeMarkup: fals…

▾ Twilightwetty · wettyEPSS 0.44%via NVD
CVE-2026-49473High· 8.8
1mo ago

@cedar-policy/authorization-for-expressjs is an open-source Express.js middleware that integrates Cedar authorization into Express applications by mapping HTTP requests to Cedar actions and evaluating authorization policies before allowi…

@cedar-policy/authorization-for-expressjs is an open-source Express.js middleware that integrates Cedar authorization into Express applications by mapping HTTP requests to Cedar actions and evaluating authorization policies before allowi…

▾ Twilightcedar-policy · @cedar-policy/authorization-for-expressjsEPSS 0.47%via NVD
CVE-2026-72925Medium· 6.1
1mo ago

SWC is a TypeScript / JavaScript compiler written in Rust

SWC is a TypeScript / JavaScript compiler written in Rust. Prior to @swc/html 1.15.47-nightly-20260729.1 and swc_html_minifier 59.0.0, the minifyJson processing in crates/swc_html_minifier/src/lib.rs parsed and serialized attacker-contro…

▾ Sunlitswc · @swc/htmlEPSS 0.34%via NVD
CVE-2026-73222High· 8.8
1mo ago

Claude Code Templates is a CLI tool for configuring and monitoring Claude Code

Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds to all interfaces on port 3444, permit…

▾ Twilightclaude-code-templates · claude-code-templatesEPSS 0.32%via NVD
CVE-2026-73231High· 7.8
1mo ago

Faker generates massive amounts of fake data in the browser and Node.js

Faker generates massive amounts of fake data in the browser and Node.js. Prior to 10.5.0, the faker.helpers.fake method in src/modules/helpers/eval.ts allows attacker-controlled fake templates to access the Function constructor through f…

▾ Twilightfaker-js · @faker-js/fakerEPSS 0.21%via NVD
CVE-2026-73086High· 7.4
1mo ago

nanoid is a secure, URL-friendly, unique string ID generator for JavaScript

nanoid is a secure, URL-friendly, unique string ID generator for JavaScript. Prior to versions 3.3.12 and 5.1.11, the nanoid(size) function in index.js and index.cjs coerces the user-influenced size parameter to a signed 32-bit integer, …

▾ Twilightnanoid · nanoidEPSS 0.30%via NVD
CVE-2026-73088High· 7.5
1mo ago

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, normalizeStats() in node.js, reached unconditionally through getStat() and loadStat() on every browserslist()…

▾ TwilightRed Hat · Red Hat Enterprise Linux 8EPSS 0.66%via NVD
CVE-2026-73089High· 7.5
1mo ago

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools

Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, index.js retains every distinct `(queries, context)` result in cache and every parseQueries() AST in parseCac…

▾ TwilightRed Hat · Red Hat Enterprise Linux 8EPSS 0.66%via NVD
GHSA-4jjw-pwvw-q6w3Medium· 6.2
1mo ago

Duplicate Advisory: Nuxt dev server discloses project root and workspace UUID via the Chrome DevTools workspace endpoint

Duplicate Advisory: Nuxt dev server discloses project root and workspace UUID via the Chrome DevTools workspace endpoint

▾ Sunlitnuxt · nuxtvia GHSA
CVE-2026-15895High· 7.8
1mo ago

jsii-diff: Command Injection via npm: package argument

jsii-diff: Command Injection via npm: package argument

▾ Twilightjsii-diff · jsii-diffEPSS 1.1%via GHSA
CVE-2026-71848Medium· 5.3
1mo ago

Hono is a Web application framework that provides support for any JavaScript runtime

Hono is a Web application framework that provides support for any JavaScript runtime. From 4.12.0 to 4.12.33, the languageDetector middleware is vulnerable to algorithmic complexity denial of service when processing a crafted language ta…

▾ Sunlithono · honoEPSS 0.51%via NVD
CVE-2026-71849Low· 3.7
1mo ago

Hono is a Web application framework that provides support for any JavaScript runtime

Hono is a Web application framework that provides support for any JavaScript runtime. From 4.7.0 to 4.12.33, the Proxy Helper proxy() function in hono/proxy does not remove response headers named by the origin's Connection header. Per RF…

▾ Sunlithono · honoEPSS 0.36%via NVD
CVE-2026-71850Medium· 4.8
1mo ago

Hono is a Web application framework that provides support for any JavaScript runtime

Hono is a Web application framework that provides support for any JavaScript runtime. From 3.8.0 to 4.12.33, memo() from hono/jsx retains the result of a server side render and reuses it for later renders with comparator equal props, and…

▾ Sunlithono · honoEPSS 0.27%via NVD
CVE-2026-71851Critical· 9.0PoC
1mo ago

crypto-js is a JavaScript library of crypto standards

crypto-js is a JavaScript library of crypto standards. Versions of crypto-js prior to 4.0.0 generate randomness in CryptoJS.lib.WordArray.random() using a custom variation of the Multiply-With-Carry pseudorandom number generator, seeded …

▾ Abyssalcrypto-js · crypto-jsEPSS 0.55%via NVD
GHSA-7c4v-fwgw-9rf7Medium
1mo ago

Nuxt dev server discloses project root and workspace UUID via the Chrome DevTools workspace endpoint

Nuxt dev server discloses project root and workspace UUID via the Chrome DevTools workspace endpoint

▾ Sunlitnuxt · nuxtvia GHSA
CVE-2026-66062Medium· 5.3
1mo ago

SvelteKit is a framework for rapidly developing robust, performant web applications using Svelte

SvelteKit is a framework for rapidly developing robust, performant web applications using Svelte. Prior to 2.70.2, the content negotiation header parser used by SvelteKit's request handling (for headers such as Accept) uses a regular exp…

▾ Sunlitsveltejs · @sveltejs/kitEPSS 0.51%via NVD
GHSA-55q2-fjhq-7xh7Medium
1mo ago

DOMPurify: IN_PLACE hook removal leaves a detached subtree executable, causing XSS

DOMPurify: IN_PLACE hook removal leaves a detached subtree executable, causing XSS

▾ Sunlitdompurify · dompurifyvia GHSA
CVE-2026-69207Medium· 5.3
1mo ago

Hono is a Web application framework that provides support for any JavaScript runtime

Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.12.34, the built-in CORS middleware, hono/cors, is vulnerable to a regular expression denial of service (ReDoS). During a preflight OPTIONS …

▾ Sunlithono · honoEPSS 0.61%via NVD
CVE-2026-48007High
1mo ago

Element Call is a native Matrix video conferencing application

Element Call is a native Matrix video conferencing application. Versions 0.5.17 through 0.19.3 report analytics data to a PostHog server, when configured to by a `posthog` key in config.json or by the `posthogApiHost` and `posthogApiKey`…

▾ Twilightelement-hq · @element-hq/element-call-embeddedEPSS 0.25%via NVD
CVE-2026-48170Critical· 9.1
1mo ago

`scim-patch`, a library to perform SCIM patch, prior to version 0.9.1 performs prototype pollution when applying a SCIM PATCH operation whose `value` object contains a key like `"__proto__.someProp"`

`scim-patch`, a library to perform SCIM patch, prior to version 0.9.1 performs prototype pollution when applying a SCIM PATCH operation whose `value` object contains a key like `"__proto__.someProp"`. After one such patch, `Object.protot…

▾ Midnightscim-patch · scim-patchEPSS 0.40%via NVD
CVE-2026-16633High
1mo ago

PDF.js: Arbitrary JavaScript execution upon opening a malicious PDF

PDF.js: Arbitrary JavaScript execution upon opening a malicious PDF

▾ Twilightpdfjs-dist · pdfjs-distvia GHSA
GHSA-w9hm-4m3m-fxmmHigh
1mo ago

ngx-extended-pdf-viewer bundles a version of pdf.js vulnerable to CVE-2026-16633

ngx-extended-pdf-viewer bundles a version of pdf.js vulnerable to CVE-2026-16633

▾ Twilightngx-extended-pdf-viewer · ngx-extended-pdf-viewervia GHSA
CVE-2026-71430Medium· 6.2
1mo ago

node-re2 provides RE2 regular expression bindings for Node.js

node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.25.1, the WrappedRE2::Replace function built its replacement result and passed it to V8 using ToLocalChecked without checking for the empty MaybeLocal that…

▾ SunlitRed Hat · re2EPSS 0.16%via NVD
CVE-2026-71498Medium· 5.1
1mo ago

node-re2 provides RE2 regular expression bindings for Node.js

node-re2 provides RE2 regular expression bindings for Node.js. Prior to version 1.26.1, passing a Buffer whose final bytes form a truncated (incomplete) multi-byte UTF-8 sequence could cause the native binding to read past the end of the…

▾ SunlitRed Hat · re2EPSS 0.17%via NVD
CVE-2026-71476High
1mo ago

Nx is a monorepo solution for TypeScript and polyglot codebases

Nx is a monorepo solution for TypeScript and polyglot codebases. From version 20.8.0 until 22.7.7 and 23.0.2, the Nx self-hosted HTTP remote cache extracts downloaded cache artifacts without constraining where files are written. A malici…

▾ Twilightnx · nxEPSS 0.86%via NVD
GHSA-5p4m-2wfm-xmqjHigh· 7.5
1mo ago

JS-YAML: Quadratic CPU consumption in !!omap resolution (3.x and 4.x) — CVE-2026-59870 fix not backported

JS-YAML: Quadratic CPU consumption in !!omap resolution (3.x and 4.x) — CVE-2026-59870 fix not backported

▾ Twilightjs-yaml · js-yamlvia GHSA
CVE-2026-71436Medium· 7.5
1mo ago

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 10.6.0 until 10.9.8 and 11.16.1, Mermaid XY Charts are vulnerable to an infinite loop denial of service in the setXAxisR…

▾ Sunlitmermaid · mermaidEPSS 0.58%via NVD
CVE-2026-71437Medium
1mo ago

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. From version 11.5.0 until 11.16.1, Mermaid Architecture Diagrams are vulnerable to prototype pollution when a diagram defines a group…

▾ Sunlitmermaid · mermaidEPSS 0.50%via NVD
CVE-2026-50159Medium
1mo ago

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 and 11.16.1, Mermaid is vulnerable to CSS injection via sibling combinator selectors generated from diagram-supplied …

▾ Sunlitmermaid · mermaidEPSS 0.60%via NVD
CVE-2026-71438Low
1mo ago

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts

Mermaid is a JavaScript tool that uses Markdown-inspired text to create and modify diagrams and charts. Prior to 10.9.8 and 11.16.1, Mermaid's configuration setters (mermaid.initialize, mermaidAPI.setConfig, and mermaidAPI.updateSiteConf…

▾ Sunlitmermaid · mermaidEPSS 0.35%via NVD
CVEs tagged “npm” — page 10 · VulnSea