Vulnerabilities

Summary — last 7 days

New vulnerabilities2,662▼ 678 vs. last week
Critical / high1,268▼ 288 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)230▼ 272 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedMedium (6.1)0.51%—Hyperdown Project Hyperdown10/26/20226/17/2026
The package joyqi/hyper-down from 0.0.0 are vulnerable to Cross-site Scripting (XSS) because the module of parse markdown does not filter the href attribute very well.
Orbitaley — Vulnerabilities