Fast, disk space efficient package manager
91%
Total Score
61
100
100
95
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10970 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. pnpm is vulnerable to Insufficient policy enforcement in versions 11.0.0 - 11.1.1. | 11.0.0 - 11.1.1 | Medium |
CVE-2026-24131 pnpm is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 10.28.2. | 0.0.0 - 10.28.2 | Medium |
CVE-2026-23888 pnpm is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 10.28.1. | 0.0.0 - 10.28.1 | Medium |
CVE-2026-23889 pnpm is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 0.0.0 - 10.28.1. | 0.0.0 - 10.28.1 | Medium |
CVE-2026-23890 pnpm is vulnerable to Relative Path Traversal in versions 0.0.0 - 10.28.1. | 0.0.0 - 10.28.1 | Medium |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant