Angular server side rendering utilities
90%
Total Score
100
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2026-44437 @angular/ssr is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 22.0.0-next.0 - 22.0.0-next.7, 21.0.0-next.0 - 21.2.9, 20.0.0-next.0 - 20.3.25 and 19.0.0-next.0 - 19.2.25. | 19.0.0-next.0 - 19.2.2520.0.0-next.0 - 20.3.2521.0.0-next.0 - 21.2.9 +1 more | Medium |
AIKIDO-2026-10688 @angular/ssr is vulnerable to Server-Side Request Forgery (SSRF) in versions 17.0.0 - 19.2.24, 20.0.0 - 20.3.24, 21.0.0 - 21.2.8 and 22.0.0-next.0 - 22.0.0-next.6. | 17.0.0 - 19.2.2420.0.0 - 20.3.2421.0.0 - 21.2.8 +1 more | High |
CVE-2026-33397 @angular/ssr is vulnerable to URL Redirection to Untrusted Site ('Open Redirect') in versions 22.0.0-next.0 - 22.0.0-next.2, 21.0.0-next.0 - 21.2.3 and 20.0.0-next.0 - 20.3.21. | 20.0.0-next.0 - 20.3.2121.0.0-next.0 - 21.2.322.0.0-next.0 - 22.0.0-next.2 | Medium |
CVE-2026-27739 @angular/ssr is vulnerable to Server-Side Request Forgery (SSRF) in versions 21.2.0-next.0 - 21.2.0-rc.0, 21.0.0-next.0 - 21.1.5, 20.0.0-next.0 - 20.3.17 and 0.0.0 - 19.2.21. | 0.0.0 - 19.2.2120.0.0-next.0 - 20.3.1721.0.0-next.0 - 21.1.5 +1 more | Critical |
CVE-2026-27738 @angular/ssr is vulnerable to URL Redirection to Untrusted Site ('Open Redirect') in versions 21.2.0-next.0 - 21.2.0-rc.0, 21.0.0-next.0 - 21.1.5, 20.0.0-next.0 - 20.3.17 and 19.0.0-next.0 - 19.2.21. | 19.0.0-next.0 - 19.2.2120.0.0-next.0 - 20.3.1721.0.0-next.0 - 21.1.5 +1 more | Medium |
| Dependency | Last Release | Score |
|---|---|---|
tslib Version ^2.3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant