0-legacy, tiny & fast web framework as a replacement of Express
100%
Total Score
100
97
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-618217 @tinyhttp/app is vulnerable to Cross-Site Scripting (XSS) in versions 0.0.1 - 3.0.10. | 0.0.1 - 3.0.10 | Medium |
AIKIDO-2026-877398 @tinyhttp/app is vulnerable to Denial of Service (DoS) in versions 2.0.0 - 3.0.8. | 2.0.0 - 3.0.8 | Medium |
AIKIDO-2026-916663 @tinyhttp/app is vulnerable to Open Redirect in versions 3.0.7 - 3.0.8. | 3.0.7 - 3.0.8 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
regexparam Version ^3.0.0 | — | — |
@tinyhttp/req Version 2.2.10 | — | — |
@tinyhttp/res Version 2.2.15 | — | — |
@tinyhttp/cookie Version 2.1.1 | — | — |
@tinyhttp/router Version 2.2.5 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.