An HTTP/1.1 client, written from scratch for Node.js
87%
Total Score
63
100
100
70
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10385 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. undici is vulnerable to Prototype Pollution in versions 4.0.0 - 7.24.0. | 4.0.0 - 7.24.0 | Low |
AIKIDO-2026-10369 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. undici is vulnerable to Prototype Pollution in versions 2.0.2 - 7.22.0. | 2.0.2 - 7.22.0 | Low |
CVE-2026-1526 undici is vulnerable to Improper Handling of Highly Compressed Data (Data Amplification) in versions 0.0.0 - 6.24.0 and 7.0.0 - 7.24.0. | 0.0.0 - 6.24.07.0.0 - 7.24.0 | High |
CVE-2026-2229 undici is vulnerable to Uncaught Exception in versions 0.0.0 - 6.24.0 and 7.0.0 - 7.24.0. | 0.0.0 - 6.24.07.0.0 - 7.24.0 | High |
CVE-2026-1527 undici is vulnerable to Improper Neutralization of CRLF Sequences ('CRLF Injection') in versions 0.0.0 - 6.24.0 and 7.0.0 - 7.24.0. | 0.0.0 - 6.24.07.0.0 - 7.24.0 | Medium |
No direct dependencies.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant