V
Vexday
by TrueHacking
›
Briefing
Live
PT
ES
EN
Home
/
Technologies
/
Bun
Vulnerabilities in
Bun
1 result
CVE-2026-24910
MEDIUM
In Bun before 1.3.5, the default trusted dependencies list (aka trust allow list) can be spoofed by a non-npm package in the case of a match
EPSS
0.1%