npm Package Vulnerabilities
All 2,691 JavaScript / Node.js packages with known CVEs, ranked by live CVE volume — 5,630 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 2,201.@sap-cloud-sdk/core1 CVE
- 2,202.@sap/hana-client1 CVE
- 2,203.@sap/xssec1 CVE
- 2,204.sassdoc-extras1 CVE
- 2,205.sauce-connect1 CVE
- 2,206.save-server1 CVE
- 2,207.scala-bin1 CVE
- 2,208.scalajs-standalone-bin1 CVE
- 2,209.@scandipwa/magento-scripts1 CVE
- 2,210.sceditor1 CVE
- 2,211.scim-patch1 CVE
- 2,212.scott-blanch-weather-app1 CVE
- 2,213.scratch-vm1 CVE
- 2,214.screenshot-desktop1 CVE
- 2,215.script-manager1 CVE
- 2,216.@scrypted/core1 CVE
- 2,217.@scrypted/server1 CVE
- 2,218.scss-tokenizer1 CVE
- 2,219.@scullyio/ng-lib1 CVE
- 2,220.@scullyio/scully1 CVE
- 2,221.@seafile/sdoc-editor1 CVE
- 2,222.seajs1 CVE
- 2,223.sealed-env1 CVE
- 2,224.secp256k11 CVE
- 2,225.section2.madisonjbrooks121 CVE
- 2,226.secure-compare1 CVE
- 2,227.seeftl1 CVE
- 2,228.select21 CVE
- 2,229.selectize-plugin-a11y1 CVE
- 2,230.selenium-binaries1 CVE
- 2,231.selenium-chromedriver1 CVE
- 2,232.selenium-download1 CVE
- 2,233.selenium-portal1 CVE
- 2,234.selenium-standalone-painful1 CVE
- 2,235.selenium-wrapper1 CVE
- 2,236.semver-tags1 CVE
- 2,237.sencisho1 CVE
- 2,238.seneca1 CVE
- 2,239.@sentry/aws-serverless1 CVE
- 2,240.@sentry/bun1 CVE
- 2,241.@sentry/google-cloud-serverless1 CVE
- 2,242.@sentry/nestjs1 CVE
- 2,243.@sentry/node1 CVE
- 2,244.@sentry/node-core1 CVE
- 2,245.@sentry/nuxt1 CVE
- 2,246.@sentry/remix1 CVE
- 2,247.@sentry/solidstart1 CVE
- 2,248.@sentry/sveltekit1 CVE
- 2,249.@sequa-ai/sequa-mcp1 CVE
- 2,250.sequelize-typescript1 CVE
Which npm packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →