The core Nx plugin contains the core functionality of Nx like the project graph, nx commands and task orchestration.
92%
Total Score
65
95
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-10894 nx is vulnerable to Embedded Malicious Code in versions 21.5.0 - 21.5.0, 20.9.0 - 20.9.0, 20.10.0 - 20.10.0, 21.6.0 - 21.6.0, 20.11.0 - 20.11.0, 21.7.0 - 21.7.0, 21.8.0 - 21.8.0 and 20.12.0 - 20.12.0. | 20.9.0 - 20.9.020.10.0 - 20.10.020.11.0 - 20.11.0 +5 more | Critical |
AIKIDO-2024-10023 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. nx is vulnerable to Exposure of Sensitive System Information in versions 12.3.5 - 18.1.2. | 12.3.5 - 18.1.2 | High |
| Dependency | Last Release | Score |
|---|---|---|
bl Version 4.1.0 | — | — |
ejs Version 5.0.1 | — | — |
ora Version 5.3.0 | — | — |
tmp Version 0.2.6 | — | — |
flat Version 5.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant