_NOTE: This is specifically tailored for Firebase JS SDK usage, if you are not a member of the Firebase team, please avoid using this package_
86%
Total Score
81
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10025 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @firebase/util is vulnerable to Generation of Weak Initialization Vector in versions 1.6.2 - 1.10.2. | 1.6.2 - 1.10.2 | Low |
CVE-2020-7765 @firebase/util is vulnerable to Uncontrolled Resource Consumption in versions 0.0.0 - 0.3.4. | 0.0.0 - 0.3.4 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
tslib Version ^2.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant