A simple, expressive and safe Shopify / Github Pages compatible template engine in pure JavaScript.
91%
Total Score
61
100
100
95
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-45618 New liquidjs is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 10.26.0. | 0.0.0 - 10.26.0 | Critical |
CVE-2026-45617 New liquidjs is vulnerable to Inefficient Regular Expression Complexity in versions 0.0.0 - 10.26.0. | 0.0.0 - 10.26.0 | High |
CVE-2026-45357 New liquidjs is vulnerable to Uncontrolled Resource Consumption in versions 0.0.0 - 10.25.7. | 0.0.0 - 10.25.7 | High |
CVE-2026-44646 New liquidjs is vulnerable to Protection Mechanism Failure in versions 0.0.0 - 10.25.7. | 0.0.0 - 10.25.7 | Medium |
CVE-2026-44645 New liquidjs is vulnerable to Uncontrolled Resource Consumption in versions 0.0.0 - 10.25.7. | 0.0.0 - 10.25.7 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
commander Version ^10.0.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant