Simple Npm Registry Project maintains a focused npm package registry implementation with a narrow product scope centered on the simple_npm_registry component. Current vulnerability exposure, severity levels, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simple Npm Registry Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-16132HIGH simple-npm-registry is a local npm package cache. simple-npm-registry is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in | Jun 7, 2018 | 7.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simple Npm Registry Project.
Media articles that mention a CVE ID that affects a product developed by Simple Npm Registry Project — matched by CVE ID, not by vendor name.