Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| GHSA-r6w3-xpw9-p9g6 |
|
Vulnerability in @mastra/express (GHSA-r6w3-xpw9-p9g6)
vulnerability in @mastra/express (GHSA-r6w3-xpw9-p9g6). Risk of unauthorized operations or information disclosure.
|
| GHSA-9qg4-j8r6-rjc9 |
|
Vulnerability in @mastra/nestjs (GHSA-9qg4-j8r6-rjc9)
vulnerability in @mastra/nestjs (GHSA-9qg4-j8r6-rjc9). Risk of unauthorized operations or information disclosure.
|
| GHSA-wm6j-68jc-4x58 |
|
Vulnerability in @mastra/server (GHSA-wm6j-68jc-4x58)
vulnerability in @mastra/server (GHSA-wm6j-68jc-4x58). Risk of unauthorized operations or information disclosure.
|
| GHSA-69g6-344c-3qpm |
|
Vulnerability in @mastra/memory (GHSA-69g6-344c-3qpm)
vulnerability in @mastra/memory (GHSA-69g6-344c-3qpm). Risk of unauthorized operations or information disclosure.
|
| GHSA-4jmq-h62h-xhgh |
|
Vulnerability in @mastra/client-js (GHSA-4jmq-h62h-xhgh)
vulnerability in @mastra/client-js (GHSA-4jmq-h62h-xhgh). Risk of unauthorized operations or information disclosure.
|
| GHSA-jgwq-x2m5-mxhm |
|
Vulnerability in create-mastra (GHSA-jgwq-x2m5-mxhm)
vulnerability in create-mastra (GHSA-jgwq-x2m5-mxhm). Risk of unauthorized operations or information disclosure.
|
| GHSA-pp62-grrw-hvfp |
|
Vulnerability in @mastra/core (GHSA-pp62-grrw-hvfp)
vulnerability in @mastra/core (GHSA-pp62-grrw-hvfp). Risk of unauthorized operations or information disclosure.
|
| GHSA-rjjh-j9jr-wg46 |
|
Vulnerability in @mastra/deployer (GHSA-rjjh-j9jr-wg46)
vulnerability in @mastra/deployer (GHSA-rjjh-j9jr-wg46). Risk of unauthorized operations or information disclosure.
|
| GHSA-7jwq-33cp-frr8 |
|
Vulnerability in metrics-probe-64b2 (GHSA-7jwq-33cp-frr8)
vulnerability in metrics-probe-64b2 (GHSA-7jwq-33cp-frr8). Risk of unauthorized operations or information disclosure.
|
| GHSA-94g9-7rch-xv9j |
|
Vulnerability in metrics-probe-77d4 (GHSA-94g9-7rch-xv9j)
vulnerability in metrics-probe-77d4 (GHSA-94g9-7rch-xv9j). Risk of unauthorized operations or information disclosure.
|
| GHSA-49m3-wjc7-7pxw |
|
Vulnerability in metrics-probe-dc85 (GHSA-49m3-wjc7-7pxw)
vulnerability in metrics-probe-dc85 (GHSA-49m3-wjc7-7pxw). Risk of unauthorized operations or information disclosure. Exploitable via ``http``.
|
| GHSA-755p-5wm7-4qg5 |
|
Vulnerability in pkg-telemetry-r4f9 (GHSA-755p-5wm7-4qg5)
vulnerability in pkg-telemetry-r4f9 (GHSA-755p-5wm7-4qg5). Risk of unauthorized operations or information disclosure.
|
| GHSA-65h4-xcqj-p428 |
|
Vulnerability in runtime-metrics-w7k2 (GHSA-65h4-xcqj-p428)
vulnerability in runtime-metrics-w7k2 (GHSA-65h4-xcqj-p428). Risk of unauthorized operations or information disclosure. Exploitable via ``beacon18.js``.
|
| GHSA-p3jc-qrj7-hj68 |
|
Vulnerability in npm-sandbox-ping-r9t2 (GHSA-p3jc-qrj7-hj68)
vulnerability in npm-sandbox-ping-r9t2 (GHSA-p3jc-qrj7-hj68). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5984 |
|
Vulnerability in nepublisher (MAL-2026-5984)
vulnerability in nepublisher (MAL-2026-5984). Risk of unauthorized operations or information disclosure.
|
| GHSA-m637-4v9j-499p |
|
Vulnerability in ts-webplug (GHSA-m637-4v9j-499p)
vulnerability in ts-webplug (GHSA-m637-4v9j-499p). Risk of unauthorized operations or information disclosure. Exploitable via ``pino``.
|
| MAL-2026-5995 |
|
Vulnerability in tobihook (MAL-2026-5995)
vulnerability in tobihook (MAL-2026-5995). Risk of unauthorized operations or information disclosure.
|
| GHSA-7qr8-pqwp-95p9 |
|
Vulnerability in node-path-utils (GHSA-7qr8-pqwp-95p9)
vulnerability in node-path-utils (GHSA-7qr8-pqwp-95p9). Risk of unauthorized operations or information disclosure. Exploitable via ``path``.
|
| MAL-2026-5993 |
|
Vulnerability in sheratan_test_p (MAL-2026-5993)
vulnerability in sheratan_test_p (MAL-2026-5993). Risk of unauthorized operations or information disclosure. Exploitable via ``whoami``.
|
| GHSA-623x-x2wh-q9xq |
|
Vulnerability in pathfix (GHSA-623x-x2wh-q9xq)
vulnerability in pathfix (GHSA-623x-x2wh-q9xq). Risk of unauthorized operations or information disclosure. Exploitable via ``request``.
|
| MAL-2026-5987 |
|
Vulnerability in ogd-analytics (MAL-2026-5987)
vulnerability in ogd-analytics (MAL-2026-5987). Risk of unauthorized operations or information disclosure. Exploitable via ``hostname``.
|
| GHSA-gj7f-m4cx-vmx3 |
|
Vulnerability in classbreeze-utils (GHSA-gj7f-m4cx-vmx3)
vulnerability in classbreeze-utils (GHSA-gj7f-m4cx-vmx3). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5979 |
|
Vulnerability in easy-day-js (MAL-2026-5979)
vulnerability in easy-day-js (MAL-2026-5979). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5971 |
|
Vulnerability in @public-for-cdao/hooks (MAL-2026-5971)
vulnerability in @public-for-cdao/hooks (MAL-2026-5971). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5975 |
|
Vulnerability in cryptodao-contracts (MAL-2026-5975)
vulnerability in cryptodao-contracts (MAL-2026-5975). Risk of unauthorized operations or information disclosure. Exploitable via ``recon.js``.
|
| MAL-2026-5976 |
|
Vulnerability in cryptodao-core (MAL-2026-5976)
vulnerability in cryptodao-core (MAL-2026-5976). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5974 |
|
Vulnerability in cryptodao-bot (MAL-2026-5974)
vulnerability in cryptodao-bot (MAL-2026-5974). Risk of unauthorized operations or information disclosure. Exploitable via ``postinstall``.
|
| MAL-2026-5978 |
|
Vulnerability in cryptodao-utils (MAL-2026-5978)
vulnerability in cryptodao-utils (MAL-2026-5978). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5977 |
|
Vulnerability in cryptodao-signer (MAL-2026-5977)
vulnerability in cryptodao-signer (MAL-2026-5977). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5968 |
|
Vulnerability in cryptodao-deploy (MAL-2026-5968)
vulnerability in cryptodao-deploy (MAL-2026-5968). Risk of unauthorized operations or information disclosure. Exploitable via ``https.request``.
|
| MAL-2026-5967 |
|
Vulnerability in cryptodao-config (MAL-2026-5967)
vulnerability in cryptodao-config (MAL-2026-5967). Risk of unauthorized operations or information disclosure. Exploitable via ``enqoojbegdvxj.x.pipedream.net``.
|
| MAL-2026-5970 |
|
Vulnerability in cryptodao-types (MAL-2026-5970)
vulnerability in cryptodao-types (MAL-2026-5970). Risk of unauthorized operations or information disclosure. Exploitable via ``enqoojbegdvxj.x.pipedream.net``.
|
| MAL-2026-5966 |
|
Vulnerability in cryptodao-backend (MAL-2026-5966)
vulnerability in cryptodao-backend (MAL-2026-5966). Risk of unauthorized operations or information disclosure.
|
| MAL-2026-5969 |
|
Vulnerability in cryptodao-sdk (MAL-2026-5969)
vulnerability in cryptodao-sdk (MAL-2026-5969). Risk of unauthorized operations or information disclosure.
|
| CGA-x9x2-h6wq-m4f8 |
|
CGA-x9x2-h6wq-m4f8 |
| CGA-4chq-8f8m-cxg9 |
|
CGA-4chq-8f8m-cxg9 |
| CGA-844f-mf5p-f2jr |
|
CGA-844f-mf5p-f2jr |
| GHSA-p3jv-r79x-4jvw |
|
Vulnerability in @mastra/posthog (GHSA-p3jv-r79x-4jvw)
vulnerability in @mastra/posthog (GHSA-p3jv-r79x-4jvw). Risk of unauthorized operations or information disclosure.
|
| GHSA-6327-2cw4-7cv9 |
|
Vulnerability in @mastra/clickhouse (GHSA-6327-2cw4-7cv9)
vulnerability in @mastra/clickhouse (GHSA-6327-2cw4-7cv9). Risk of unauthorized operations or information disclosure.
|
| GHSA-cgr7-8rxj-9vgx |
|
Vulnerability in @mastra/inngest (GHSA-cgr7-8rxj-9vgx)
vulnerability in @mastra/inngest (GHSA-cgr7-8rxj-9vgx). Risk of unauthorized operations or information disclosure.
|
| GHSA-64qh-859p-w8cf |
|
Vulnerability in @mastra/braintrust (GHSA-64qh-859p-w8cf)
vulnerability in @mastra/braintrust (GHSA-64qh-859p-w8cf). Risk of unauthorized operations or information disclosure.
|
| GHSA-442j-fj4w-jhpw |
|
Vulnerability in @mastra/rag (GHSA-442j-fj4w-jhpw)
vulnerability in @mastra/rag (GHSA-442j-fj4w-jhpw). Risk of unauthorized operations or information disclosure.
|
| GHSA-prf3-w8mj-rf6j |
|
Vulnerability in @mastra/mongodb (GHSA-prf3-w8mj-rf6j)
vulnerability in @mastra/mongodb (GHSA-prf3-w8mj-rf6j). Risk of unauthorized operations or information disclosure.
|
| GHSA-q2q2-qp24-85vj |
|
Vulnerability in @mastra/fastify (GHSA-q2q2-qp24-85vj)
vulnerability in @mastra/fastify (GHSA-q2q2-qp24-85vj). Risk of unauthorized operations or information disclosure.
|
| GHSA-wxp6-9hmr-928g |
|
Vulnerability in @mastra/mcp-docs-server (GHSA-wxp6-9hmr-928g)
vulnerability in @mastra/mcp-docs-server (GHSA-wxp6-9hmr-928g). Risk of unauthorized operations or information disclosure.
|
| GHSA-xqqc-fpmf-95cg |
|
Vulnerability in @mastra/langsmith (GHSA-xqqc-fpmf-95cg)
vulnerability in @mastra/langsmith (GHSA-xqqc-fpmf-95cg). Risk of unauthorized operations or information disclosure.
|
| GHSA-r8mf-3854-wvmf |
|
Vulnerability in @mastra/sentry (GHSA-r8mf-3854-wvmf)
vulnerability in @mastra/sentry (GHSA-r8mf-3854-wvmf). Risk of unauthorized operations or information disclosure.
|
| GHSA-6fx7-6whr-32rx |
|
Vulnerability in @mastra/s3 (GHSA-6fx7-6whr-32rx)
vulnerability in @mastra/s3 (GHSA-6fx7-6whr-32rx). Risk of unauthorized operations or information disclosure.
|
| GHSA-7wrg-5c4f-2ph2 |
|
Vulnerability in @mastra/fastembed (GHSA-7wrg-5c4f-2ph2)
vulnerability in @mastra/fastembed (GHSA-7wrg-5c4f-2ph2). Risk of unauthorized operations or information disclosure.
|
| GHSA-957m-hm9p-jqrv |
|
Vulnerability in @mastra/auth (GHSA-957m-hm9p-jqrv)
vulnerability in @mastra/auth (GHSA-957m-hm9p-jqrv). Risk of unauthorized operations or information disclosure.
|