An HTTP/1.1 client, written from scratch for Node.js
87%
Total Score
64
100
100
70
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10939 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. undici is vulnerable to Improper Input Validation in versions 7.0.0 - 7.25.0. | 7.0.0 - 7.25.0 | Medium |
AIKIDO-2026-10385 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. undici is vulnerable to Prototype Pollution in versions 4.0.0 - 7.24.0. | 4.0.0 - 7.24.0 | Low |
AIKIDO-2026-10369 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. undici is vulnerable to Prototype Pollution in versions 2.0.2 - 7.22.0. | 2.0.2 - 7.22.0 | Low |
CVE-2026-1526 undici is vulnerable to Improper Handling of Highly Compressed Data (Data Amplification) in versions 0.0.0 - 6.24.0 and 7.0.0 - 7.24.0. | 0.0.0 - 6.24.07.0.0 - 7.24.0 | High |
CVE-2026-2229 undici is vulnerable to Uncaught Exception in versions 0.0.0 - 6.24.0 and 7.0.0 - 7.24.0. | 0.0.0 - 6.24.07.0.0 - 7.24.0 | High |
No direct dependencies.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant