SockJS-node is a server counterpart of SockJS-client a JavaScript library that provides a WebSocket-like object in the browser. SockJS gives you a coherent, cross-browser, Javascript API which creates a low latency, full duplex, cross-domain communication
84%
Total Score
70
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2020-7693 sockjs is vulnerable to Improper Input Validation in versions 0.0.0 - 0.3.20. | 0.0.0 - 0.3.20 | Medium |
CVE-2020-8823 sockjs is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 0.3.0. | 0.0.0 - 0.3.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
uuid Version ^8.3.2 | — | — |
faye-websocket Version ^0.11.3 | — | — |
websocket-driver Version ^0.7.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant