Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2242082
AlmaLinux
5975
Alpaquita
16176
Alpine
4655
Android
3708
Azure Linux
17971
BellSoft Hardened Containers
770
Bitnami
9501
Chainguard
1048510
CleanStart
5235
CRAN
14
crates.io
2763
Debian
68975
Echo
7872
GHC
3
GIT
109056
GitHub Actions
55
Go
9328
Hackage
33
Hex
364
Julia
1713
Linux
29975
Mageia
6237
Maven
7050
MinimOS
148636
npm
229211
NuGet
1869
opam
29
openEuler
8900
openSUSE
14647
OSS-Fuzz
4019
Packagist
7101
Pub
11
PyPI
25464
Red Hat
23535
Rocky Linux
4343
Root
19643
RubyGems
5369
SUSE
23442
SwiftURL
60
TuxCare
9951
Ubuntu
66085
VSCode
21
Wolfi
293807
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-r5fr-rjxr-66jc
npm/lodash
npm/lodash-amd
npm/lodash-es
npm/lodash.template
lodash vulnerable to Code Injection via `_.template` imports key names
01 Apr
Fix available
Severity - 8.1 (High)
GHSA-f23m-r3pf-42rh
npm/lodash
npm/lodash-amd
npm/lodash-es
npm/lodash.unset
lodash vulnerable to Prototype Pollution via array path bypass in `_.unset` and `_.omit`
01 Apr
Fix available
Severity - 6.5 (Medium)
GHSA-xxjr-mmjv-4gpg
npm/lodash
npm/lodash-amd
npm/lodash-es
npm/lodash.unset
Lodash has Prototype Pollution Vulnerability in `_.unset` and `_.omit` functions
21 Jan
Fix available
Severity - 6.9 (Medium)
GHSA-29mw-wpgm-hmr9
RubyGems/lodash-rails
npm/lodash
npm/lodash-es
npm/lodash.trim
npm/lodash.trimend
Regular Expression Denial of Service (ReDoS) in lodash
06 Jan 2022
Fix available
Severity - 5.3 (Medium)
GHSA-35jh-r3h4-6jhm
RubyGems/lodash-rails
npm/lodash
npm/lodash-es
npm/lodash-template
npm/lodash.template
Command Injection in lodash
06 May 2021
Fix available
Severity - 7.2 (High)
GHSA-p6mc-m468-83gw
RubyGems/lodash-rails
npm/lodash
npm/lodash-es
npm/lodash.pick
npm/lodash.set
... 3 more
Prototype Pollution in lodash
15 Jul 2020
Fix available
Severity - 7.4 (High)
GHSA-x5rq-j2xg-h7qm
RubyGems/lodash-rails
npm/lodash
npm/lodash-amd
npm/lodash-es
Regular Expression Denial of Service (ReDoS) in lodash
19 Jul 2019
Fix available
Severity - 6.5 (Medium)
GHSA-jf85-cpcp-j695
RubyGems/lodash-rails
npm/lodash
npm/lodash-amd
npm/lodash-es
npm/lodash.defaultsdeep
Prototype Pollution in lodash
10 Jul 2019
Fix available
Severity - 9.1 (Critical)
npm - OSV