Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
812915
AlmaLinux
5473
Alpaquita
12406
Alpine
4355
Android
3404
Azure Linux
12016
BellSoft Hardened Containers
612
Bitnami
8525
Chainguard
9887
CleanStart
1988
CRAN
14
crates.io
2628
Debian
62338
Echo
7694
GHC
3
GIT
97501
GitHub Actions
54
Go
8568
Hackage
32
Hex
227
Julia
1568
Linux
26605
Mageia
6101
Maven
6797
MinimOS
104181
npm
225858
NuGet
1832
opam
24
openEuler
7502
openSUSE
13837
OSS-Fuzz
3975
Packagist
6804
Pub
11
PyPI
24342
Red Hat
21911
Rocky Linux
3846
Root
18808
RubyGems
4591
SUSE
22126
SwiftURL
59
TuxCare
8165
Ubuntu
59207
VSCode
20
Wolfi
7020
ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-qpx9-hpmf-5gmw
npm/underscore
Underscore has unlimited recursion in _.flatten and _.isEqual, potential for DoS attack
03 Mar
Fix available
Severity - 8.2 (High)
GHSA-gpvc-mx6g-cchv
npm/underscore-keypath
underscore-keypath vulnerable to Prototype Pollution
01 Aug 2023
No fix available
Severity - 7.5 (High)
GHSA-cf4h-3jhx-xvhq
npm/underscore
Arbitrary Code Execution in underscore
06 May 2021
Fix available
Severity - 9.8 (Critical)
GHSA-v2p6-4mp7-3r9v
npm/underscore.string
Regular Expression Denial of Service in underscore.string
14 Jun 2019
Fix available
npm - OSV