blitz
npm2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting blitzpage 1 of 1
- CVE-2022-23631CRITICALCVSS 9.0EG 9.0✓ Fixed in 0.45.32022-02-09
superjson is a program to allow JavaScript expressions to be serialized to a superset of JSON. In versions prior to 1.8.1 superjson allows input to run arbitrary code on any server using superjson input without prior authentication or know…
- CVE-2026-9520MEDIUMCVSS 4.3EG 4.32026-05-26
A weakness has been identified in blitz-js blitz up to 3.0.2 on GitHub. This impacts an unknown function of the file packages/generator/templates/app/src/app/auth/components/LoginForm.tsx of the component Sign-in. This manipulation of the …
Check whether blitz is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for blitz CVEs against the assets you own.
Start Free Scan →