Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
22040.2%CRITICAL

Related CVEs

2
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2025-59717In the @digitalocean/do-markdownit package through 1.16.1 (in npm), the callout and fence_environment plugins perform .includes substring matching if allowedClasses or allowedEnvironments is a string (instead of an array).CRITICAL9.828.0%Sep 19, 2025
CVE-2020-36569Authentication is globally bypassed in github.com/nanobox-io/golang-nanoauth between v0.0.0-20160722212129-ac0cc4484ad4 and v0.0.0-20200131131040-063a3fb69896 if ListenAndServe is called with an empty token.CRITICAL9.152.3%Dec 27, 2022