a secure dotenv–from the creator of `dotenv`
99%
Total Score
100
100
100
95
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10538 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @dotenvx/dotenvx is vulnerable to OS command injection in versions 1.24.0 - 1.61.5. | 1.24.0 - 1.61.5 |
| Dependency | Last Release | Score |
|---|---|---|
conf Version ^10.2.0 | — | — |
fdir Version ^6.2.0 | — | — |
open Version ^8.4.2 | — | — |
execa Version ^5.1.1 | — | — |
which Version ^4.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant