Vulnerability DB

Detailed information and remediation guidance for known vulnerabilities.
Find out if you have vulnerabilities that put you at risk Test your code
Vulnerability Affects Type Published
  • M
Signature Validation Bypass
electron-updater * npm 21 May, 2020
  • H
Cross-site Scripting (XSS)
markdown-to-jsx <6.11.4 npm 21 May, 2020
  • L
Insecure Configuration
vega-embed <6.7.0 npm 21 May, 2020
  • M
Cross-site Scripting (XSS)
jquery <1.9.0 npm 19 May, 2020
  • H
Arbitrary Code Execution
front-matter <4.0.1 npm 19 May, 2020
  • M
Improper Output Neutralization for Logs
generator-jhipster <6.9.0 npm 18 May, 2020
  • M
Cryptographic Issues
openpgp <0.10.0 npm 18 May, 2020
  • M
Denial of Service (DoS)
http-proxy <1.18.1 npm 16 May, 2020
  • H
Buffer Overflow
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 15 May, 2020
  • H
Use After Free
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 15 May, 2020
  • H
Improper Validation
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 15 May, 2020
  • H
Use After Free
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 15 May, 2020
  • M
Cross-site Scripting (XSS)
summernote * npm 14 May, 2020
  • M
Prototype Pollution
objutil * npm 14 May, 2020
  • H
DLL Injection
kerberos <1.0.0 npm 12 May, 2020
  • M
Cross-site Scripting (XSS)
tinymce <4.9.10,>=5.0.0 <5.2.2 npm 12 May, 2020
  • H
Improper Validation
slpjs <0.27.2 npm 12 May, 2020
  • H
Improper Validation
slp-validate <1.2.1 npm 12 May, 2020
  • H
Cross-site Scripting (XSS)
buefy <0.8.18 npm 11 May, 2020
  • H
Remote Code Execution (RCE)
logkitty * npm 10 May, 2020
  • H
Type Confusion
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 07 May, 2020
  • M
Cross-site Scripting (XSS)
instantsearch.js <4.3.1 npm 07 May, 2020
  • H
Out-of-bounds Write
electron >=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 07 May, 2020
  • H
Command Injection
curlrequest * npm 07 May, 2020
  • M
Regular Expression Denial of Service (ReDoS)
markdown * npm 01 May, 2020
  • M
Cross-site Scripting (XSS)
jquery >=1.2.0 <3.5.0 npm 29 Apr, 2020
  • M
Information Disclosure
@actions/http-client <1.0.8 npm 29 Apr, 2020
  • H
Use After Free
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 29 Apr, 2020
  • H
Use After Free
electron >=6.0.0 <6.1.12,>=7.0.0 <7.3.0,>=8.0.0 <8.3.0 npm 29 Apr, 2020
  • M
Prototype Pollution
lodash * npm 28 Apr, 2020