Assembly comparison for jsii
94%
Total Score
100
83
100
100
0
| Title | Versions | Severity |
|---|---|---|
CVE-2026-15895 jsii-diff is vulnerable to Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in versions 0.0.0 - 1.131.0. | 0.0.0 - 1.131.0 | High |
AIKIDO-2026-10855 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. jsii-diff is vulnerable to Command Injection in versions 0.9.0 - 1.130.0. | 0.9.0 - 1.130.0 | High |
| Dependency | Last Release | Score |
|---|---|---|
yargs Version ^17.7.3 | — | — |
log4js Version ^6.9.1 | — | — |
fs-extra Version ^10.1.0 | — | — |
@jsii/spec Version 1.140.0 | — | — |
jsii-reflect Version ^1.140.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant