Protocol Buffers for JavaScript & TypeScript.
91%
Total Score
62
100
100
100
95
| Title | Versions | Severity |
|---|---|---|
CVE-2026-45740 protobufjs is vulnerable to Uncontrolled Recursion in versions 0.0.0 - 7.5.7 and 8.0.0 - 8.2.0. | 0.0.0 - 7.5.78.0.0 - 8.2.0 | Medium |
CVE-2026-44294 protobufjs is vulnerable to Improper Input Validation in versions 0.0.0 - 7.5.5 and 8.0.0 - 8.0.1. | 0.0.0 - 7.5.58.0.0 - 8.0.1 | Medium |
CVE-2026-44293 protobufjs is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 7.5.5 and 8.0.0 - 8.0.1. | 0.0.0 - 7.5.58.0.0 - 8.0.1 | High |
CVE-2026-44292 protobufjs is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 0.0.0 - 7.5.5 and 8.0.0 - 8.0.1. | 0.0.0 - 7.5.58.0.0 - 8.0.1 | Medium |
CVE-2026-44291 protobufjs is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 7.5.5 and 8.0.0 - 8.0.1. | 0.0.0 - 7.5.58.0.0 - 8.0.1 | High |
| Dependency | Last Release | Score |
|---|---|---|
long Version ^5.3.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant