Vulnerability Library

ID
Packages
Summary
Affected versions
Published
Fix
MAL-2024-1309
Malicious code in npm-package-shirley (npm)
  • 1.0.4
2024-04-30T15:03:00Z No fix available
MAL-2024-1308
Malicious code in not-exist-lykos-poc (npm)
  • 66.6.6
2024-04-30T03:36:41Z No fix available
MAL-2024-1304
Malicious code in minecraft-net-core-services (npm)
  • 1.0.1
2024-04-29T18:00:55Z No fix available
MAL-2024-1305
  • npm/discord.js-red
Malicious code in discord.js-red (npm)
  • See details.
2024-04-29T10:10:13Z No fix available
MAL-2024-1307
  • npm/ethutility
Malicious code in ethutility (npm)
  • See details.
2024-04-29T08:50:09Z No fix available
MAL-2024-1306
  • npm/ethers-transactions
Malicious code in ethers-transactions (npm)
  • See details.
2024-04-29T08:37:44Z No fix available
MAL-2024-1299
  • npm/driftdegreerubbish
Malicious code in driftdegreerubbish (npm)
  • See details.
2024-04-24T06:54:55Z No fix available
MAL-2024-1300
  • npm/pardonbeefconfession
Malicious code in pardonbeefconfession (npm)
  • See details.
2024-04-24T06:54:55Z No fix available
MAL-2024-1301
  • npm/pleadappointmentat
Malicious code in pleadappointmentat (npm)
  • See details.
2024-04-24T06:54:55Z No fix available
MAL-2024-1302
  • npm/relinquishsecurecontinuous
Malicious code in relinquishsecurecontinuous (npm)
  • See details.
2024-04-24T06:54:55Z No fix available
MAL-2024-1303
  • npm/rollremainsweet
Malicious code in rollremainsweet (npm)
  • See details.
2024-04-24T06:54:55Z No fix available
GHSA-624g-8qjg-8qxf
  • npm/@conform-to/dom
  • npm/@conform-to/zod
  • npm/@conform-to/yup
Conform contains a Prototype Pollution Vulnerability in `parseWith...` function
  • See details.
2024-04-23T21:15:55Z Fix available
GHSA-rqgv-292v-5qgr
  • npm/renovate
Renovate vulnerable to arbitrary command injection via helmv3 manager and registryAliases
  • See details.
2024-04-23T16:21:09Z Fix available
GHSA-3mpf-rcc7-5347
  • npm/hono
Hono vulnerable to Restricted Directory Traversal in serveStatic with deno
  • See details.
2024-04-23T16:20:49Z Fix available
GHSA-4rch-2fh8-94vw
  • npm/mysql2
MySQL2 for Node Arbitrary Code Injection
  • See details.
2024-04-23T06:30:47Z Fix available
MAL-2024-1298
  • npm/dev-ansi-terminal
Malicious code in dev-ansi-terminal (npm)
  • See details.
2024-04-23T04:59:27Z No fix available