| CVE-2026-100721 | CRITICAL | vm2 | 3.11.7 | 3.12.2 | vm2: NodeVM custom resolution bypasses external path boundaries |
| CVE-2026-102828 | CRITICAL | simple-git | 3.36.0 | 4.0.1 | simple-git: simple-git unsafe-operation guard does not block trailer command configuration |
| CVE-2026-102829 | CRITICAL | @simple-git/argv-parser | 1.1.1 | 2.0.1 | simple-git: `VISUAL` editor environment variable is omitted from unsafe editor detection |
| CVE-2026-92934 | CRITICAL | vm2 | 3.11.7 | 3.11.8 | vm2: vm2 before 3.11.8 Sandbox Escape RCE via AggregateError |
| CVE-2026-92953 | CRITICAL | vm2 | 3.11.7 | 3.11.8 | vm2: vm2 3.11.0 through 3.11.7 Prototype Pollution via TypedArray |
| CVE-2026-92954 | CRITICAL | vm2 | 3.11.7 | 3.11.8 | vm2: vm2 3.10.0 through 3.11.5 Denial of Service via Host Promise |
| CVE-2026-92955 | CRITICAL | vm2 | 3.11.7 | 3.11.8 | vm2: vm2 before 3.11.8 Sandbox Escape via NodeVM |
| CVE-2026-100722 | HIGH | vm2 | 3.11.7 | 3.12.2 | vm2: vm2: Denial of Service via unhandled Promise rejection in construct trap |
| CVE-2026-102826 | HIGH | simple-git | 3.36.0 | 4.0.0 | simple-git: simple-git allows command execution through unblocked Git configuration includes |
| CVE-2026-102827 | HIGH | simple-git | 3.36.0 | 4.0.0 | simple-git: unsafe-operations plugin bypass via git long-option abbreviation (--receive-p/--exe) -> command execution (residual of CVE-2026-28291) |
| CVE-2026-104850 | HIGH | @modelcontextprotocol/sdk | 1.26.0 | 1.31.0 | MCP TypeScript SDK: OAuth client could send credentials to an authorization server chosen by the MCP server |
| CVE-2026-87776 | HIGH | compression | 1.8.1 | 1.8.2 | compression: compression: Denial of Service via memory leak on premature response close |
| CVE-2026-92959 | HIGH | vm2 | 3.11.7 | 3.11.8 | vm2: vm2: Asynchronous code execution bypass via Promise thenable assimilation |
| CVE-2026-93687 | HIGH | braces | 3.0.3 | — غير قابلة للإصلاح | braces: braces: Denial of Service via Stack Overflow from Deeply Nested Patterns |
| CVE-2026-100723 | MEDIUM | vm2 | 3.11.7 | 3.12.2 | vm2: vm2: Information disclosure via zlib shared buffer pool |
| CVE-2026-104182 | MEDIUM | stream-json | 3.5.0 | 3.6.0 | stream-json: stream-json: Denial of Service via inefficient comment scanning |
| CVE-2026-104183 | MEDIUM | stream-json | 3.5.0 | 3.6.0 | stream-json: stream-json: Object prototype manipulation via crafted JSON input |
| CVE-2026-86597 | MEDIUM | snowflake-sdk | 2.1.0 | 3.3.0 | Snowflake drivers writes sensitive information to logs |
| CVE-2026-92933 | MEDIUM | vm2 | 3.11.7 | 3.11.8 | vm2: vm2: Information Disclosure via util.getCallSites |
| CVE-2024-1899 | MEDIUM | showdown | 2.1.0 | — غير قابلة للإصلاح | Showdown vulnerable to Regular Expression Denial of Service (ReDoS) in link/anchor parsing |
| CVE-2025-57665 | MEDIUM | element-plus | 2.4.3 | — غير قابلة للإصلاح | Element Plus Link component (el-link) implements insufficient input validation for the href attribute |
| CVE-2026-59710 | MEDIUM | showdown | 2.1.0 | — غير قابلة للإصلاح | showdown: Showdown: Stored Cross-Site Scripting via unescaped table header ID attributes in markdown |
| CVE-2026-59711 | MEDIUM | showdown | 2.1.0 | — غير قابلة للإصلاح | showdown: Showdown: Cross-site scripting via unescaped metadata title allows arbitrary code execution |
| CVE-2026-97058 | MEDIUM | sprintf-js | 1.0.3 | — غير قابلة للإصلاح | sprintf-js: sprintf-js: Denial of Service via unbounded precision specifiers |
| CVE-2026-97058 | MEDIUM | sprintf-js | 1.1.3 | — غير قابلة للإصلاح | sprintf-js: sprintf-js: Denial of Service via unbounded precision specifiers |
| CVE-2026-105799 | LOW | @langchain/redis | 1.0.1 | 1.1.1 | LangChain: RediSearch Filter Injection via Unescaped Tag/Text Values |