The Code-First Notifications Workflow SDK.
83%
Total Score
65
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10891 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. @novu/framework is vulnerable to Cross-Site Scripting (XSS) in versions 2.5.2 - 2.8.0. | 2.5.2 - 2.8.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
ajv Version ^8.12.0 | — | — |
chalk Version ^4.1.2 | — | — |
liquidjs Version ^10.20.0 | — | — |
pluralize Version ^8.0.0 | — | — |
jsonrepair Version ^3.13.1 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant