Storybook: Develop, document, and test UI components in isolation
83%
Total Score
66
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2026-27148 storybook is vulnerable to Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') in versions 8.1.0 - 8.6.17, 8.7.0-alpha.0 - 9.1.19 and 10.0.0-beta.0 - 10.2.10. | 8.1.0 - 8.6.178.7.0-alpha.0 - 9.1.1910.0.0-beta.0 - 10.2.10 | High |
CVE-2025-68429 storybook is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 7.0.0 - 7.6.21, 8.0.0 - 8.6.15, 9.0.0 - 9.1.17 and 10.0.0 - 10.1.10. | 7.0.0 - 7.6.218.0.0 - 8.6.159.0.0 - 9.1.17 +1 more | High |
| Dependency | Last Release | Score |
|---|---|---|
ws Version ^8.18.0 | — | — |
open Version ^10.2.0 | — | — |
recast Version ^0.23.5 | — | — |
semver Version ^7.7.3 | — | — |
esbuild Version ^0.18.0 || ^0.19.0 || ^0.20.0 || ^0.21.0 || ^0.22.0 || ^0.23.0 || ^0.24.0 || ^0.25.0 || ^0.26.0 || ^0.27.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant