Plugin for serving static files as fast as possible.
85%
Total Score
75
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2026-6410 @fastify/static is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 8.0.0 - 9.1.0. | 8.0.0 - 9.1.0 | Medium |
CVE-2026-6414 @fastify/static is vulnerable to Improper Handling of URL Encoding (Hex Encoding) in versions 8.0.0 - 9.1.0. | 8.0.0 - 9.1.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
glob Version ^13.0.0 | — | — |
fastq Version ^1.17.1 | — | — |
@fastify/send Version ^4.0.0 | — | — |
fastify-plugin Version ^5.0.0 | — | — |
content-disposition Version ^1.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant