YAML 1.2 parser and serializer
97%
Total Score
100
97
100
100
0
| Title | Versions | Severity |
|---|---|---|
CVE-2026-84375 New js-yaml is vulnerable to Uncontrolled Resource Consumption in versions 4.0.0 - 4.3.2 and 3.0.0 - 3.15.2. | 3.0.0 - 3.15.24.0.0 - 4.3.2 | High |
AIKIDO-2026-641142 New js-yaml is vulnerable to Denial of Service (DoS) in versions 3.0.0 - 3.15.1 and 4.0.0 - 4.3.1. | 3.0.0 - 3.15.14.0.0 - 4.3.1 | High |
AIKIDO-2026-543038 New js-yaml is vulnerable to Denial of Service (DoS) in versions 5.0.0 - 5.4.0. | 5.0.0 - 5.4.0 | Medium |
AIKIDO-2026-633502 js-yaml is vulnerable to Denial of Service (DoS) in versions 3.0.0 - 3.15.0 and 4.0.0 - 4.3.0. | 3.0.0 - 3.15.04.0.0 - 4.3.0 | High |
CVE-2026-73643 js-yaml is vulnerable to Inefficient Algorithmic Complexity in versions 5.0.0 - 5.2.1. | 5.0.0 - 5.2.1 | High |
| Dependency | Last Release | Score |
|---|---|---|
argparse Version ^2.0.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.