rollup-plugin-copy for vite with dev server support.
93%
Total Score
65
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-57753 vite-plugin-static-copy is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 3.0.0 - 3.1.1 and 0.4.3 - 2.3.1. | 0.4.3 - 2.3.13.0.0 - 3.1.1 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
p-map Version ^7.0.4 | — | — |
chokidar Version ^3.6.0 | — | — |
picocolors Version ^1.1.1 | — | — |
tinyglobby Version ^0.2.15 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant