Angular - the compiler library
86%
Total Score
81
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10836 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @angular/compiler is vulnerable to Cross-site Scripting (XSS) in versions 21.0.0 - 21.2.12. | 21.0.0 - 21.2.12 | Medium |
CVE-2026-22610 @angular/compiler is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 21.1.0-next.0 - 21.1.0-rc.0, 21.0.0-next.0 - 21.0.7, 20.0.0-next.0 - 20.3.16, 19.0.0-next.0 - 19.2.18 and 0.0.0 - 18.2.14. | 0.0.0 - 18.2.1419.0.0-next.0 - 19.2.1820.0.0-next.0 - 20.3.16 +2 more | High |
CVE-2025-66412 @angular/compiler is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 21.0.0-next.0 - 21.0.2, 20.0.0-next.0 - 20.3.15, 19.0.0-next.0 - 19.2.17 and 0.0.0 - 18.2.14. | 0.0.0 - 18.2.1419.0.0-next.0 - 19.2.1720.0.0-next.0 - 20.3.15 +1 more | High |
| Dependency | Last Release | Score |
|---|---|---|
tslib Version ^2.3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant