Fast, lightweight JSON Schema validator for Node.js and browsers — full support for draft-04, draft-06, draft-07, draft-2019-09, and draft-2020-12 (latest)
93%
Total Score
65
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-10450 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. z-schema is vulnerable to Prototype Pollution in versions 3.0.0 - 12.0.4. | 3.0.0 - 12.0.4 | Medium |
AIKIDO-2026-10449 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. z-schema is vulnerable to Regular Expression Denial-of-service (ReDoS) in versions 7.1.0 - 12.0.4. | 7.1.0 - 12.0.4 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
punycode Version ^2.3.1 | — | — |
validator Version ^13.15.26 | — | — |
safe-regex2 Version ^5.1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant