Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
MAL-2026-2319
  • npm/base-or-engine
Malicious code in base-or-engine (npm) 01 Apr
  • No fix available
MAL-2026-1636
  • npm/@sommos/create-leaverule-or-terminationrule-form-data
Malicious code in @sommos/create-leaverule-or-terminationrule-form-data (npm) 18 Mar
  • No fix available
MAL-2024-9869
  • npm/str-or-num
Malicious code in str-or-num (npm) 16 Oct 2024
  • No fix available
MAL-2023-212
  • npm/create-or-update-comment
Malicious code in create-or-update-comment (npm) 11 Jan 2023
  • No fix available
GHSA-3x62-x456-q2vm
  • npm/git-pull-or-clone
OS Command Injection in git-pull-or-clone 03 May 2022
  • Fix available
  • Severity - 9.8 (Critical)
GHSA-6rv4-4qv6-88g2
  • npm/set-or-get
Prototype Pollution in set-or-get 12 Apr 2021
  • Fix available
  • Severity - 9.8 (Critical)
GHSA-jxf5-7x3j-8j9m
  • npm/load-from-cwd-or-npm
Malicious Package in load-from-cwd-or-npm 03 Sep 2020
  • Fix available
  • Severity - 9.8 (Critical)