The semantic version parser used by npm.
92%
Total Score
61
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2022-25883 semver is vulnerable to Inefficient Regular Expression Complexity in versions 7.0.0 - 7.5.2, 6.0.0 - 6.3.1 and 2.0.0-alpha - 5.7.2. | 2.0.0-alpha - 5.7.26.0.0 - 6.3.17.0.0 - 7.5.2 | High |
CVE-2015-8855 semver is vulnerable to Inefficient Regular Expression Complexity in versions 1.0.4 - 4.3.2. | 1.0.4 - 4.3.2 | High |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant