Releases309
Frequency1 week 6 days
Last Release
Stars1.36K
Gets JavaScript

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the string variable in babel.js.

9.8 CRITICAL

Prototype pollution vulnerability in stealjs steal 2.2.4 via the alias variable in babel.js.

9.8 CRITICAL

Prototype pollution vulnerability in function convertLater in npm-convert.js in stealjs steal 2.2.4 via the packageName variable in npm-convert.js.

7.5 HIGH

A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the input variable in main.js.

7.5 HIGH

A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the source and sourceWithComments variable in main.js.

9.8 CRITICAL

Prototype pollution vulnerability in stealjs steal 2.2.4 via the optionName variable in main.js.

9.8 CRITICAL

Prototype pollution vulnerability in function convertLater in npm-convert.js in stealjs steal 2.2.4 via the requestedVersion variable in npm-convert.js.

9.8 CRITICAL

Prototype pollution vulnerability in function extend in babel.js in stealjs steal 2.2.4 via the key variable in babel.js.