Lexes CommonJS modules, returning their named exports metadata
96%
Total Score
97
100
99
100
0
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10017 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. cjs-module-lexer is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.4.3 - 2.1.0. | 0.4.3 - 2.1.0 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant