An implementation of a [Signal K](http://signalk.org) server for boats.
91%
Total Score
61
95
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-41893 signalk-server is vulnerable to Improper Restriction of Excessive Authentication Attempts in versions 0.0.0 - 2.24.0. | 0.0.0 - 2.24.0 | High |
CVE-2026-39320 signalk-server is vulnerable to Uncontrolled Resource Consumption in versions 0.0.0 - 2.25.0. | 0.0.0 - 2.25.0 | High |
CVE-2026-34083 signalk-server is vulnerable to Origin Validation Error in versions 2.20.0 - 2.24.0. | 2.20.0 - 2.24.0 | Medium |
CVE-2026-33951 signalk-server is vulnerable to Improper Access Control in versions 0.0.0 - 2.24.0-beta.1. | 0.0.0 - 2.24.0-beta.1 | High |
CVE-2026-33950 signalk-server is vulnerable to Improper Authorization in versions 0.0.0 - 2.24.0-beta.4. | 0.0.0 - 2.24.0-beta.4 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
ms Version ^2.1.2 | — | — |
ws Version ^8.17.0 | — | — |
ncp Version ^2.0.0 | — | — |
ora Version ^5.4.1 | — | — |
cors Version ^2.5.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant