Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-r5fr-rjxr-66jc
  • npm/lodash
  • npm/lodash-amd
  • npm/lodash-es
  • npm/lodash.template
lodash vulnerable to Code Injection via `_.template` imports key names 01 Apr
  • Fix available
  • Severity - 8.1 (High)
GHSA-35jh-r3h4-6jhm
  • RubyGems/lodash-rails
  • npm/lodash
  • npm/lodash-es
  • npm/lodash-template
  • npm/lodash.template
Command Injection in lodash 06 May 2021
  • Fix available
  • Severity - 7.2 (High)