npm Package Vulnerabilities
All 2,701 JavaScript / Node.js packages with known CVEs, ranked by live CVE volume — 5,719 package-to-CVE mappings with affected ranges and fixed versions. Updated continuously as new vulnerabilities publish.
- 701.@ag-grid-enterprise/charts1 CVE
- 702.ai1 CVE
- 703.@aiondadotcom/mcp-ssh1 CVE
- 704.airbrake1 CVE
- 705.air-sdk1 CVE
- 706.@airvertco/frappejs1 CVE
- 707.@ai-sdk/provider-utils1 CVE
- 708.@akbr/patch-into1 CVE
- 709.@akbr/update1 CVE
- 710.@akoskm/create-mcp-server-stdio1 CVE
- 711.@alexbinary/object-deep-assign1 CVE
- 712.@alizeait/unflatto1 CVE
- 713.@allanlancioni/flatten-json1 CVE
- 714.@almela/obx1 CVE
- 715.altcha1 CVE
- 716.altcha-lib1 CVE
- 717.alto-saxophone1 CVE
- 718.@amoy/common1 CVE
- 719.anchorme1 CVE
- 720.@andrea9293/mcp-documentation-server1 CVE
- 721.@andrei-tatar/nora-firebase-common1 CVE
- 722.angular-base64-upload1 CVE
- 723.angular-http-server1 CVE
- 724.angular-jwt1 CVE
- 725.angular-redactor1 CVE
- 726.angular-sanitize1 CVE
- 727.angular-server-side-configuration1 CVE
- 728.angular-ui-notification1 CVE
- 729.ansi2html1 CVE
- 730.ansi-html1 CVE
- 731.ansi-regex1 CVE
- 732.ansi_up1 CVE
- 733.@antfu/utils1 CVE
- 734.@anthropic-ai/sandbox-runtime1 CVE
- 735.antsword1 CVE
- 736.@aofl/cli-lib1 CVE
- 737.@apeleghq/asn1-der1 CVE
- 738.apexcharts1 CVE
- 739.apex-publish-static-files1 CVE
- 740.apiconnect-cli-plugins1 CVE
- 741.@apidevtools/json-schema-ref-parser1 CVE
- 742.api-lab-mcp1 CVE
- 743.apk-parser1 CVE
- 744.apk-parser21 CVE
- 745.apk-parser31 CVE
- 746.@apollo/composition1 CVE
- 747.@apollo/experimental-nextjs-app-support1 CVE
- 748.@apollo/explorer1 CVE
- 749.@apollo/federation-internals1 CVE
- 750.@apollo/sandbox1 CVE
Which npm packages run in YOUR stack?
EchelonGraph inventories your dependencies and correlates them against live CVE intelligence — affected ranges, fixed versions, and blast radius in one graph.
Start Free Scan →