Vulnerability Library

ID
Packages
Summary
Affected versions
Published
Fix
MAL-2024-1331
Malicious code in roblox.lua (npm)
  • 1.0.0
2024-05-06T01:08:42Z No fix available
MAL-2024-1326
Malicious code in zxcvbnmmmmmmkjhgfdssss (npm)
  • 1.0.1
  • 1.0.2
2024-05-05T17:15:39Z No fix available
MAL-2024-1325
Malicious code in @assurantlabs/home-device-inventory (npm)
  • 999.100.1
2024-05-05T16:50:38Z No fix available
MAL-2024-1323
Malicious code in @socialdeal/uikit-whitelabel (npm)
  • 999.100.1
2024-05-04T05:00:41Z No fix available
MAL-2024-1324
Malicious code in ing-feat-grants-management (npm)
  • 999.100.1
2024-05-04T04:56:30Z No fix available
MAL-2024-1322
Malicious code in lamia471 (npm)
  • 1.0.0
2024-05-03T22:58:38Z No fix available
MAL-2024-1330
Malicious code in elk-uikit (npm)
  • 99.99.1
  • 99.99.2
2024-05-03T22:56:31Z No fix available
MAL-2024-1332
Malicious code in uidm-react-lib (npm)
  • 99.99.1
  • 99.99.2
  • 99.99.3
2024-05-03T22:15:40Z No fix available
GHSA-hfrv-h3q8-9jpr
  • npm/kurwov
kurwov vulnerable to Denial of Service due to improper data sanitization
  • See details.
2024-05-03T20:30:38Z Fix available
GHSA-m5jf-8crm-r65m
Vditor allows Cross-site Scripting via an attribute of an `A` element
  • 3.10.3
2024-05-03T18:30:37Z No fix available
GHSA-6433-x5p4-8jc7
  • npm/libxmljs
libxmljs vulnerable to type confusion when parsing specially crafted XML
  • See details.
2024-05-02T21:30:29Z No fix available
GHSA-78h3-pg4x-j8cv
  • npm/libxmljs2
libxmljs vulnerable to type confusion when parsing specially crafted XML
  • See details.
2024-05-02T21:30:29Z No fix available
GHSA-mg49-jqgw-gcj6
  • npm/libxmljs
libxmljs vulnerable to type confusion when parsing specially crafted XML
  • See details.
2024-05-02T21:30:29Z No fix available
GHSA-mjr4-7xg5-pfvh
  • npm/libxmljs2
libxmljs2 type confusion vulnerability when parsing specially crafted XML
  • See details.
2024-05-02T21:30:29Z No fix available
MAL-2024-1327
Malicious code in discord-color (npm)
  • 1.0.5
  • 1.0.6
  • 1.0.8
2024-05-02T19:05:55Z No fix available
MAL-2024-1321
Malicious code in hw-transition-animation (npm)
  • 66.6.9
2024-05-02T17:40:37Z No fix available