A complete implementation of JSON Pointer (RFC 6901) for nodejs and modern browsers.
18%
Total Score
100
67
100
The package is deprecated at npm with a package-wide message stating it is no longer supported. This is a severe adoption risk because future maintenance and support cannot be relied on.
The package has 91 releases since June 2013, but no releases in the last three years, indicating that active maintenance has stopped or substantially declined.
| Title | Versions | Severity |
|---|---|---|
CVE-2021-23509 json-ptr is vulnerable to Access of Resource Using Incompatible Type ('Type Confusion') in versions 0.0.0 - 3.0.0. | 0.0.0 - 3.0.0 | Medium |
CVE-2020-7766 json-ptr is vulnerable to Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') in versions 0.0.0 - 2.1.0. | 0.0.0 - 2.1.0 | High |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.