Graphviz library for TypeScript
78%
Total Score
63
100
100
100
100
Only one registry account has publish access, which creates some operational concentration risk. That concern is partly offset by the repository being owned by an organization and by its continued release activity.
The repository recorded 0 commits and 0 active maintainers in the last 3 months, a meaningful maintenance pause. Frequent registry releases and the current release date partly compensate, but do not erase the gap.
There were no new or closed issues and no merged pull requests in the last month, suggesting limited current issue-management activity. The open backlog is not by itself evidence of abandonment.
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10847 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. ts-graphviz is vulnerable to Denial of Service (DoS) in versions 2.0.0 - 3.0.5. | 2.0.0 - 3.0.5 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
@ts-graphviz/ast Version ^3.0.6 | — | — |
@ts-graphviz/core Version ^3.0.7 | — | — |
@ts-graphviz/common Version ^3.0.5 | — | — |
@ts-graphviz/adapter Version ^3.0.6 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.