npm Package Vulnerabilities
All 2,689 JavaScript / Node.js packages with known CVEs, ranked by live CVE volume — 5,611 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 751.appwrite-cli1 CVE
- 752.arcanist1 CVE
- 753.argencoders-notevil1 CVE
- 754.arrayfire-js1 CVE
- 755.arr-flatten-unflatten1 CVE
- 756.asciitable.js1 CVE
- 757.@astrojs/netlify1 CVE
- 758.@astrojs/rss1 CVE
- 759.async1 CVE
- 760.@asyncapi/java-spring-cloud-stream-template1 CVE
- 761.@asyncapi/modelina1 CVE
- 762.atlasboard1 CVE
- 763.@atlaskit/editor-core1 CVE
- 764.atlassian-connect-express1 CVE
- 765.atob1 CVE
- 766.atom-node-module-installer1 CVE
- 767.audify1 CVE
- 768.augustine1 CVE
- 769.aurelia-framework1 CVE
- 770.aurelia-path1 CVE
- 771.auth01 CVE
- 772.auth-fetch-mcp1 CVE
- 773.automagik-genie1 CVE
- 774.@aws-amplify/cli1 CVE
- 775.@aws-cdk/aws-eks1 CVE
- 776.aws-lambda1 CVE
- 777.aws-lambda-multipart-parser1 CVE
- 778.aws-sdk1 CVE
- 779.@aws-sdk/shared-ini-file-loader1 CVE
- 780.@awsui/components-react1 CVE
- 781.axios-cache-interceptor1 CVE
- 782.azle1 CVE
- 783.@azure/identity1 CVE
- 784.@azure/mcp1 CVE
- 785.@azure/msal-node1 CVE
- 786.@azure/ms-rest-nodeauth1 CVE
- 787.babelcli1 CVE
- 788.@babel/core1 CVE
- 789.@babel/helpers1 CVE
- 790.@babel/plugin-transform-modules-systemjs1 CVE
- 791.@babel/runtime1 CVE
- 792.@babel/runtime-corejs21 CVE
- 793.@babel/runtime-corejs31 CVE
- 794.@babel/traverse1 CVE
- 795.babel-traverse1 CVE
- 796.backbone1 CVE
- 797.backbone-query-parameters1 CVE
- 798.backslash1 CVE
- 799.@backstage/backend-app-api1 CVE
- 800.@backstage/backend-common1 CVE
Which npm packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →