Basic IP rate-limiting middleware for Express. Use to limit repeated requests to public APIs and/or endpoints such as password reset.
92%
Total Score
62
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-30827 express-rate-limit is vulnerable to Allocation of Resources Without Limits or Throttling in versions 8.2.0 - 8.2.2, 8.1.0 - 8.1.0 and 8.0.0 - 8.0.2. | 8.0.0 - 8.0.28.1.0 - 8.1.08.2.0 - 8.2.2 | High |
| Dependency | Last Release | Score |
|---|---|---|
ip-address Version ^10.2.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant