Lightspark JS SDK
92%
Total Score
61
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10661 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @lightsparkdev/lightspark-sdk is vulnerable to Observable Timing Discrepancy in versions 1.0.6 - 1.9.11. | 1.0.6 - 1.9.11 | Low |
| Dependency | Last Release | Score |
|---|---|---|
ws Version ^8.12.1 | — | — |
dayjs Version ^1.11.7 | — | — |
dotenv Version ^16.3.1 | — | — |
graphql Version ^16.6.0 | — | — |
graphql-ws Version ^5.11.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant