Vulnerabilities

Summary — last 7 days

New vulnerabilities3,241▲ 698 vs. last week
Critical / high1,519▲ 132 vs. last week
New active exploitation (KEV)5▼ 1 vs. last week
Unscored (no CVSS)235▲ 221 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedCritical (9.8)2.1%—Post-loader Project Post-loader3/17/20226/17/2026
The package post-loader from 0.0.0 are vulnerable to Arbitrary Code Execution which uses a markdown parser in an unsafe way so that any javascript code inside the markdown input files gets evaluated and executed.
Orbitaley — Vulnerabilities