86%
Total Score
100
86
61
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-967133 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. mppx is vulnerable to Improper Neutralization of CRLF Sequences (CRLF Injection) in versions 0.1.0 - 0.6.9. | 0.1.0 - 0.6.9 | Medium |
AIKIDO-2026-369362 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. mppx is vulnerable to Improper Authorization in versions 0.1.0 - 0.6.8. | 0.1.0 - 0.6.8 | Medium |
AIKIDO-2026-484607 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. mppx is vulnerable to Authentication Bypass in versions 0.5.5 - 0.6.11. | 0.5.5 - 0.6.11 | Medium |
AIKIDO-2026-11064 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. mppx is vulnerable to Authentication Bypass via Signature Replay in versions 0.5.0 - 0.6.4. | 0.5.0 - 0.6.4 | High |
AIKIDO-2026-10748 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. mppx is vulnerable to Replay Attacks in versions 0.0.1 - 0.6.14. | 0.0.1 - 0.6.14 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
ox Version 0.14.30 | — | — |
zod Version ^4.4.3 | — | — |
incur Version ^0.4.10 | — | — |
@stripe/stripe-js Version 9.9.0 | — | — |
eventsource-parser Version 3.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant