Vulnerabilities in Npm, Inc.
3 resultsVexday analysis
Npm, Inc. apresenta presença mínima na base de vulnerabilidades com apenas 2 CVEs registrados, nenhum deles em exploração ativa ou classificado como crítico. A fraqueza dominante identificada é CWE-22 (path traversal), sem registros de publicações recentes, indicando um perfil de risco baixo no contexto atual.
CVE-2018-16202—Directory traversal vulnerability in cordova-plugin-ionic-webview versions prior to 2.2.0 (not including 2.0.0-beta.0, 2.0.0-beta.1, 2.0.0-bEPSS 3.3%CVE-2019-5423—Path traversal vulnerability in http-live-simulator npm package version 1.0.5 allows arbitrary path to be accessed on the file system by a rEPSS 2.8%CVE-2019-5422—XSS in buttle npm package version 0.2.0 causes execution of attacker-provided code in the victim's browser when an attacker creates an arbitEPSS 1.2%