gRPC Library for Node - pure JS implementation
90%
Total Score
100
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2026-48068 New @grpc/grpc-js is vulnerable to Uncaught Exception in versions 0.0.0 - 1.9.16, 1.10.0 - 1.10.12, 1.11.0 - 1.11.4, 1.12.0 - 1.12.7, 1.13.0 - 1.13.5 and 1.14.0 - 1.14.4. | 0.0.0 - 1.9.161.10.0 - 1.10.121.11.0 - 1.11.4 +3 more | High |
CVE-2026-48069 New @grpc/grpc-js is vulnerable to Uncaught Exception in versions 0.0.0 - 1.9.16, 1.10.0 - 1.10.12, 1.11.0 - 1.11.4, 1.12.0 - 1.12.7, 1.13.0 - 1.13.5 and 1.14.0 - 1.14.4. | 0.0.0 - 1.9.161.10.0 - 1.10.121.11.0 - 1.11.4 +3 more | High |
CVE-2024-37168 @grpc/grpc-js is vulnerable to Memory Allocation with Excessive Size Value in versions 1.10.0 - 1.10.9, 1.9.0 - 1.9.15 and 0.0.0 - 1.8.22. | 0.0.0 - 1.8.221.9.0 - 1.9.151.10.0 - 1.10.9 | Medium |
AIKIDO-2024-10010 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @grpc/grpc-js is vulnerable to Denial of Service (DoS) in versions 1.10.2 - 1.10.2. | 1.10.2 - 1.10.2 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
@grpc/proto-loader Version ^0.8.0 | — | — |
@js-sdsl/ordered-map Version ^4.4.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant