NPM Audit Report

136

Known vulnerabilities

3,469

Dependencies

October 30th 2021, 11:09:57 am

Last updated

3

critical

106

high

26

moderate

1

low

0

info

Name Module Severity CVEs
Inefficient Regular Expression Complexity in chalk/ansi-regex ansi-regex moderate CWE-918 , CVE-2021-3807
Inefficient Regular Expression Complexity in nth-check nth-check moderate CWE-1333 , CVE-2021-3803
Prototype Pollution in set-value set-value high CWE-843 , CVE-2021-23440
Prototype Pollution in immer immer high CWE-915 , CVE-2021-3757
Prototype Pollution in immer immer critical CWE-843 , CVE-2021-23436
Arbitrary File Creation/Overwrite on Windows via insufficient relative path sanitization tar high CWE-22 , CVE-2021-37713
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links tar high CWE-22 , CVE-2021-37712
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning using symbolic links tar high CWE-22 , CVE-2021-37701
Uncontrolled Resource Consumption in ansi-html ansi-html high CWE-400 , CVE-2021-23424
Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization tar high CWE-22 , CVE-2021-32804
Arbitrary File Creation/Overwrite due to insufficient absolute path sanitization tar high CWE-22 , CVE-2021-32804
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning tar high CWE-22 , CVE-2021-32803
Arbitrary File Creation/Overwrite via insufficient symlink protection due to directory cache poisoning tar high CWE-22 , CVE-2021-32803
Regular Expression Denial of Service in trim-newlines trim-newlines high CWE-400 , CVE-2021-33623
Regular expression denial of service glob-parent high CWE-400 , CVE-2020-28469
Regular Expression Denial of Service in browserslist browserslist moderate CWE-400 , CVE-2021-23364
Regular Expression Denial of Service in trim trim high CWE-400 , CVE-2020-7753
OS Command Injection in node-notifier node-notifier moderate CWE-78 , CVE-2020-7789
Prototype Pollution ini high CWE-1321 , CVE-2020-7788
Insecure serialization leading to RCE in serialize-javascript serialize-javascript high CWE-502 , CVE-2020-7660
Validation Bypass in kind-of kind-of high CWE-668 , CVE-2019-20149
Prototype Pollution in minimist minimist moderate CWE-915 , CVE-2020-7598
Prototype Pollution in minimist minimist moderate CWE-915 , CVE-2020-7598
Regular Expression Denial of Service in braces braces low CWE-185