Package Health

nuxt-og-image

Enlightened OG Image generation for Nuxt.

Latest 6.10.3NPMNPM

86%

Total Score

healthy

Healthy: frequent releases and an active source project outweigh the concentrated contributor activity.

Are you affected? Scan for Free

Health Score Breakdown

Repo bus factorcaution

One contributor made 96% of the 75 recent commits, leaving continuity heavily dependent on that maintainer. The organization-owned repository provides some handoff capacity, but the concentration remains a caution.

Repo toolingcaution

The project uses TypeScript, Vitest, Vite, unbuild, and npm scripts, showing a structured build and test setup. No security scanning tool was detected, which is a modest transparency gap.

Security policycaution

The repository has no security policy. This does not show unsafe code, but it leaves vulnerability-reporting expectations undocumented.

Vulnerabilities

TitleVersionsSeverity
CVE-2026-61793
nuxt-og-image is vulnerable to Improper Input Validation in versions 6.0.2 - 6.7.0.
6.0.2 - 6.7.0
Medium
AIKIDO-2026-10732
nuxt-og-image is vulnerable to Server-Side Request Forgery (SSRF) in versions 6.2.5 - 6.4.8.
6.2.5 - 6.4.8
Low
CVE-2026-34405
nuxt-og-image is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 6.2.5.
0.0.0 - 6.2.5
Medium
CVE-2026-34404
nuxt-og-image is vulnerable to Uncontrolled Resource Consumption in versions 0.0.0 - 6.2.5.
0.0.0 - 6.2.5
Medium

Package versions

Maintainers

Direct Dependencies

DependencyLast ReleaseScore
ufo
Version ^1.6.4
—
—
defu
Version ^6.1.7
—
—
nypm
Version ^0.6.10
—
—
ohash
Version ^2.0.12
—
—
pathe
Version ^2.0.3
—
—

Weekly Downloads

Info

Last Published
8 days ago
Created
3 years ago
Unpacked Size
1.1 MB

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform