85%
Total Score
73
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2026-25141 @orval/core is vulnerable to Improper Neutralization of Encoded URI Schemes in a Web Page in versions 7.19.0 - 7.21.0 and 8.0.0 - 8.2.0. | 7.19.0 - 7.21.08.0.0 - 8.2.0 | Critical |
CVE-2026-23947 @orval/core is vulnerable to Improper Neutralization of Special Elements used in a Command ('Command Injection') in versions 8.0.0-rc.0 - 8.0.2 and 0.0.0 - 7.19.0. | 0.0.0 - 7.19.08.0.0-rc.0 - 8.0.2 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
jiti Version ^2.6.1 | — | — |
acorn Version ^8.15.0 | — | — |
debug Version ^4.4.3 | — | — |
remeda Version ^2.33.6 | — | — |
esbuild Version ^0.28.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant