Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2025-41820
  • npm/openmct-e2e
Malicious code in openmct-e2e (npm) 10 hours ago
  • No fix available
MAL-2025-41819
  • npm/@hpx-core-experiences/react-my-account-commons
Malicious code in @hpx-core-experiences/react-my-account-commons (npm) 14 hours ago
  • No fix available
GHSA-g5qg-72qw-gw5v
  • npm/next
Next.js Affected by Cache Key Confusion for Image Optimization API Routes yesterday
  • Fix available
  • Severity - 6.2 (Medium)
GHSA-xv57-4mr9-wg8v
  • npm/next
Next.js Content Injection Vulnerability for Image Optimization yesterday
  • Fix available
  • Severity - 4.3 (Medium)
GHSA-4342-x723-ch2f
  • npm/next
Next.js Improper Middleware Redirect Handling Leads to SSRF yesterday
  • Fix available
  • Severity - 6.5 (Medium)
MAL-2025-41818
  • npm/azure-service-bus-emulator-node-sample
Malicious code in azure-service-bus-emulator-node-sample (npm) yesterday
  • No fix available
MAL-2025-41817
  • npm/contentprocessor_web
Malicious code in contentprocessor_web (npm) yesterday
  • No fix available
MAL-2025-41816
  • npm/teshf
Malicious code in teshf (npm) yesterday
  • No fix available
MAL-2025-41815
  • npm/teshjsss
Malicious code in teshjsss (npm) yesterday
  • No fix available
GHSA-694p-3fxc-m92h
  • npm/@aiondadotcom/mcp-ssh
AiondaDotCom mcp-ssh command injection vulnerability in SSH operations yesterday
  • Fix available
  • Severity - 5.3 (Medium)
MAL-2025-41813
  • npm/react-media-template-ts
Malicious code in react-media-template-ts (npm) yesterday
  • No fix available
MAL-2025-41812
  • npm/editor-script-box
Malicious code in editor-script-box (npm) yesterday
  • No fix available
MAL-2025-41814
  • npm/typescript-api-project
Malicious code in typescript-api-project (npm) yesterday
  • No fix available
MAL-2025-41811
  • npm/focusnode
Malicious code in focusnode (npm) yesterday
  • No fix available
MAL-2025-41810
  • npm/ambmock.sol
Malicious code in ambmock.sol (npm) yesterday
  • No fix available
GHSA-26rv-h2hf-3fw4
  • npm/payload
  • npm/@payloadcms/next
  • npm/@payloadcms/graphql
Payload's SQLite adapter Session Fixation vulnerability yesterday
  • Fix available
  • Severity - 5.3 (Medium)