Bun is a fast all-in-one JavaScript runtime.
83%
Total Score
63
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2025-8022 bun is vulnerable to Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in versions 0.0.12 - 1.1.39. | 0.0.12 - 1.1.39 | High |
CVE-2024-21548 bun is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 0.0.12 - 1.1.30. | 0.0.12 - 1.1.30 | High |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant