aikido intel logoPowered by AI + Aikido Research Team

Aikido Threat Intelligence

Your earliest warning for supply chain threats. We expose malware and vulnerabilities in open-source ecosystems, within minutes.

Most Recent

Medium
Feb 6, 2026

go.mongodb.org/mongo-driver/v2 is vulnerable to Out-of-bounds Read

Upgrade the go.mongodb.org/mongo-driver/v2 library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10131
Medium
Feb 6, 2026

@modern-js/runtime is vulnerable to Cross-site Scripting (XSS)

Upgrade the @modern-js/runtime library to a patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10130
Low
Feb 6, 2026

github.com/sgnl-ai/adapter-framework is vulnerable to Insertion of Sensitive Information into Log File

Upgrade the github.com/sgnl-ai/adapter-framework library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10129
Low
Feb 6, 2026

sync-message-port is vulnerable to Denial of Service (DoS)

Upgrade the sync-message-port library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10128
High
Feb 6, 2026

mailparser is vulnerable to Cross-site Scripting (XSS)

Upgrade the mailparser library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10127
Medium
Feb 6, 2026

skills is vulnerable to Path Traversal

Upgrade the skills library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10126
Low
Feb 6, 2026

kreuzberg is vulnerable to Denial of Service (DoS)

Upgrade the kreuzberg library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10125
Medium
Feb 5, 2026

rulesync is vulnerable to Path Traversal

Upgrade the rulesync library to the patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10124
Medium
Feb 5, 2026

melbahja/seo is vulnerable to Cross-site Scripting (XSS)

Upgrade the melbahja/seo library to a patch version.

Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
AIKIDO-2026-10123
High
Feb 5, 2026

hackney is vulnerable to Insufficiently Protected Credentials

Upgrade the hackney library to the patch version.

CVE-2018-1000007AIKIDO-2026-10122

Protect yourself from malware upon install with Aikido Safe Chain (open source)

Install Safe Chain

High Profile Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.

Search and Compare Health
of Open-Source Packages.

Make confident, secure choices for your next build.

Go to Package Health
Packagist
NPM
PyPi

Our Intel, Your Security

Open source

Open Source

Aikido Intel is available under AGPL license, developers may freely use, modify, and distribute the vulnerability & malware feed.

Contribute to Intel
License the intel database

License the Intel Database

Want to integrate our threat intelligence into your product? Get access through our commercial API.

Get Access

Get Secure Now

Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.

Get Secure