Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2198389
AlmaLinux
5919
Alpaquita
15742
Alpine
4608
Android
3674
Azure Linux
17629
BellSoft Hardened Containers
745
Bitnami
9290
Chainguard
1023658
CleanStart
3591
CRAN
14
crates.io
2732
Debian
68356
Echo
6714
GHC
3
GIT
108035
GitHub Actions
55
Go
9203
Hackage
32
Hex
361
Julia
1713
Linux
29974
Mageia
6227
Maven
7040
MinimOS
144169
npm
228732
NuGet
1869
opam
29
openEuler
8800
openSUSE
14454
OSS-Fuzz
4013
Packagist
7095
Pub
11
PyPI
25158
Red Hat
23327
Rocky Linux
4292
Root
19534
RubyGems
5326
SUSE
23081
SwiftURL
60
TuxCare
9472
Ubuntu
65370
VSCode
21
Wolfi
288261
ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-17176
npm/n8n-nodes-moonlet-helpers
Malicious code in n8n-nodes-moonlet-helpers (npm)
2 days ago
No fix available
MAL-2026-17177
npm/n8n-nodes-moonlet-utils
Malicious code in n8n-nodes-moonlet-utils (npm)
2 days ago
No fix available
MAL-2026-17175
npm/n8n-nodes-flowstats
Malicious code in n8n-nodes-flowstats (npm)
2 days ago
No fix available
MAL-2026-16444
npm/n8n-nodes-healthmon
Malicious code in n8n-nodes-healthmon (npm)
4 days ago
No fix available
MAL-2026-16445
npm/n8n-nodes-metricsagent
Malicious code in n8n-nodes-metricsagent (npm)
4 days ago
No fix available
MAL-2026-16418
npm/n8n-nodes-data-transformer-utils
Malicious code in n8n-nodes-data-transformer-utils (npm)
4 days ago
No fix available
MAL-2026-16177
npm/n8n-nodes-buildcheck
Malicious code in n8n-nodes-buildcheck (npm)
15 Sep
No fix available
MAL-2026-16162
npm/n8n-nodes-sysdiag2
Malicious code in n8n-nodes-sysdiag2 (npm)
14 Sep
No fix available
MAL-2026-16147
npm/n8n-nodes-sysdiag
Malicious code in n8n-nodes-sysdiag (npm)
14 Sep
No fix available
GHSA-cw9w-vv67-hf73
npm/n8n
n8n: Per-Resource OAuth Consent Bypass via Unbound Refresh Token Resource Substitution
10 Sep
Fix available
Severity - 5.9 (Medium)
GHSA-q5wm-mgqx-fv2f
npm/n8n
n8n: Instance AI Credential Setup Accepts Unvalidated Probe URL from Fetched Content
10 Sep
Fix available
Severity - 5.9 (Medium)
GHSA-qgpw-8g46-w95v
npm/n8n
n8n: Git Node branch.<name>.remote Config Key Bypasses Sandbox Path Restriction, Enabling Local Git Repository Read
10 Sep
Fix available
Severity - 5.3 (Medium)
GHSA-cqr2-h44g-v75v
npm/n8n
n8n: Cross-Tenant Project-Member PII Disclosure via Missing Per-Project Scope Check on Role Assignment Endpoints
10 Sep
Fix available
Severity - 5.1 (Medium)
GHSA-pq6c-vh67-xpm3
npm/n8n
n8n: Log Streaming Event Destinations Decrypt Generic-Auth Credentials Without Ownership Check
10 Sep
Fix available
Severity - 5.9 (Medium)
GHSA-pf83-w3f9-8m37
npm/n8n
n8n: Disabled OIDC SSO Endpoints Remain Active and Issue Valid Sessions
10 Sep
Fix available
Severity - 6.0 (Medium)
GHSA-5m98-cgcr-xx3q
npm/n8n
n8n: GitHub Trigger 422 Reuse Path Skips Webhook Secret Storage, Causing Signature Verification to Fail-Open
10 Sep
Fix available
Severity - 6.3 (Medium)
Load more...
npm - OSV