Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2190402
AlmaLinux
5906
Alpaquita
15522
Alpine
4591
Android
3674
Azure Linux
17170
BellSoft Hardened Containers
744
Bitnami
9227
Chainguard
1021988
CleanStart
3506
CRAN
14
crates.io
2729
Debian
67670
Echo
6678
GHC
3
GIT
106891
GitHub Actions
55
Go
9195
Hackage
32
Hex
355
Julia
1713
Linux
29368
Mageia
6219
Maven
7008
MinimOS
143236
npm
228703
NuGet
1867
opam
29
openEuler
8674
openSUSE
14360
OSS-Fuzz
4006
Packagist
7083
Pub
11
PyPI
25133
Red Hat
23271
Rocky Linux
4271
Root
19507
RubyGems
5325
SUSE
23072
SwiftURL
60
TuxCare
9416
Ubuntu
64622
VSCode
21
Wolfi
287477
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-7c78-jf6q-g5cm
npm/tmp
tmp: Type-confusion bypass of _assertPath allows path traversal via non-string prefix/postfix/template
15 Jun
Fix available
Severity - 8.2 (High)
GHSA-ph9p-34f9-6g65
npm/tmp
tmp has Path Traversal via unsanitized prefix/postfix that enables directory escape
27 May
Fix available
Severity - 7.7 (High)
MAL-2025-48005
npm/tmp-npmsnha
Malicious code in tmp-npmsnha (npm)
07 Oct 2025
No fix available
MAL-2025-36995
npm/tmp-tmp3
Malicious code in tmp-tmp3 (npm)
14 Aug 2025
No fix available
GHSA-52f5-9888-hmc6
npm/tmp
tmp allows arbitrary temporary file / directory write via symbolic link `dir` parameter
06 Aug 2025
Fix available
Severity - 2.5 (Low)
MAL-2022-60
npm/@adam_baldwin/tag-tmp
Malicious code in @adam_baldwin/tag-tmp (npm)
01 Jun 2022
No fix available
npm - OSV