npm Package Vulnerabilities
All 2,666 JavaScript / Node.js packages with known CVEs, ranked by live CVE volume — 5,511 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 401.electron-markdownify2 CVEs
- 402.element-plus2 CVEs
- 403.elysia2 CVEs
- 404.enclave-vm2 CVEs
- 405.@enderfga/claw-orchestrator2 CVEs
- 406.eta2 CVEs
- 407.@excalidraw/excalidraw2 CVEs
- 408.exifreader2 CVEs
- 409.expo2 CVEs
- 410.express-fileupload2 CVEs
- 411.express-gateway2 CVEs
- 412.express-openid-connect2 CVEs
- 413.express-xss-sanitizer2 CVEs
- 414.expr-eval2 CVEs
- 415.expr-eval-fork2 CVEs
- 416.fast-filesystem-mcp2 CVEs
- 417.fastify-csrf2 CVEs
- 418.@fastify/multipart2 CVEs
- 419.fastify-multipart2 CVEs
- 420.@fastify/passport2 CVEs
- 421.@fastify/static2 CVEs
- 422.fastify-static2 CVEs
- 423.@fastly/js-compute2 CVEs
- 424.fast-string-search2 CVEs
- 425.fast-xml-builder2 CVEs
- 426.@fedify/vocab-runtime2 CVEs
- 427.financejs2 CVEs
- 428.@finastra/nestjs-proxy2 CVEs
- 429.@finastra/ssr-pages2 CVEs
- 430.find-my-way2 CVEs
- 431.fiora2 CVEs
- 432.flatted2 CVEs
- 433.flowise-ui2 CVEs
- 434.form-data2 CVEs
- 435.formio2 CVEs
- 436.forms2 CVEs
- 437.ftp-srv2 CVEs
- 438.fullpage.js2 CVEs
- 439.generator-jhipster2 CVEs
- 440.generator-jhipster-kotlin2 CVEs
- 441.genieacs2 CVEs
- 442.ggit2 CVEs
- 443.gitbook2 CVEs
- 444.@github/copilot2 CVEs
- 445.@gitlawb/openclaude2 CVEs
- 446.glob-parent2 CVEs
- 447.@hapi/content2 CVEs
- 448.@hapi/wreck2 CVEs
- 449.Haraka2 CVEs
- 450.harp2 CVEs
Which npm packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →