File tree Expand file tree Collapse file tree 1 file changed +2
-1
lines changed
Expand file tree Collapse file tree 1 file changed +2
-1
lines changed Original file line number Diff line number Diff line change 3434| critical | 5 | 5 | 5 | 3 |
3535| high | 33 | 30 | 43 | 27 |
3636| moderate | 16 | 16 | 26 | 6 |
37- | low | 3 | 3 | 8 | 0 |
37+ | low | 4 | 3 | 8 | 0 |
3838| info | 0 | 0 | 0 | 0 |
3939| unknown | 0 | 0 | 0 | 0 |
4040
125125| fast-xml-parser | low | CVE-2026 -27942 | v4, v3, v2 | fast-xml-parser has stack overflow in XMLBuilder with preserveOrder |
126126| hono | low | GHSA-gq3j -xvxp-8hrf | v2 | Hono added timing comparison hardening in basicAuth and bearerAuth |
127127| qs | low | CVE-2026 -2391 | v2 | qs's arrayLimit bypass in comma parsing allows denial of service |
128+ | tmp | low | CVE-2025 -54798 | v4 | tmp allows arbitrary temporary file / directory write via symbolic link ` dir ` pa |
128129| webpack | low | CVE-2025 -68458 | v2 | webpack buildHttp: allowedUris allow-list bypass via URL userinfo (@) leading to |
129130| webpack | low | CVE-2025 -68157 | v2 | webpack buildHttp HttpUriPlugin allowedUris bypass via HTTP redirects → SSRF + c |
You can’t perform that action at this time.
0 commit comments