Datadog APM tracing client for JavaScript
99%
Total Score
100
91
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-56796 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. dd-trace is vulnerable to Denial of Service (DoS) in versions 5.29.0 - 5.112.0. | 5.29.0 - 5.112.0 | Medium |
CVE-2026-50272 dd-trace is vulnerable to Uncontrolled Resource Consumption in versions 0.0.0 - 5.100.0. | 0.0.0 - 5.100.0 | High |
AIKIDO-2026-961466 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. dd-trace is vulnerable to Cleartext Transmission of Sensitive Information in versions 5.88.0 - 5.106.0. | 5.88.0 - 5.106.0 | Medium |
AIKIDO-2026-10530 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. dd-trace is vulnerable to Prototype Pollution in versions 2.11.0 - 5.96.0. | 2.11.0 - 5.96.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
dc-polyfill Version ^0.1.11 | — | — |
opentracing Version >=0.14.7 | — | — |
import-in-the-middle Version ^3.3.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant