JSPM

Found 70 results for vulnerabilities

snyk

snyk library and cli utility

  • v1.1298.3
  • 87.45
  • Published

better-npm-audit

Reshape into a better npm audit for the community and encourage more people to include security audit into their process.

  • v3.11.0
  • 85.93
  • Published

@snyk/protect

Snyk protect library and utility

  • v1.1298.3
  • 70.82
  • Published

@snyk/fix

Snyk fix library and utility

  • v1.1298.3
  • 59.29
  • Published

@soos-io/api-client

This is the SOOS API Client for registered clients leveraging the various integrations to the SOOS platform. Register for a free trial today at https://app.soos.io/register

  • v1.9.4
  • 58.81
  • Published

@soos-io/soos-sca

SOOS Core SCA Security Analysis - Check for vulnerabilities, licenses, policy violations and more! Register for your free trial at https://app.soos.io/register

  • v4.2.4
  • 56.85
  • Published

audit-export

Pretty export your npm audit output as an offline accessible html page

  • v5.1.0
  • 52.71
  • Published

better-npm-audit-json

Reshape into a better npm audit for the community and encourage more people to include security audit into their process.

  • v3.7.9
  • 49.53
  • Published

@soos-io/soos-sast

SOOS Static Application Security Testing (SAST) scanning support. Register for a free SOOS trial at https://app.soos.io/register

  • v1.2.4
  • 49.06
  • Published

npm-audit-plus

A wrapper around NPM's built-in audit that adds extra features

  • v0.2.0
  • 48.98
  • Published

npmplus-mcp-server

Production-ready MCP server for intelligent JavaScript package management. Works with Claude, Windsurf, Cursor, VS Code, and any MCP-compatible AI editor.

  • v12.0.19
  • 48.46
  • Published

@chax-at/better-npm-audit

Reshape into a better npm audit for the community and encourage more people to include security audit into their process.

  • v3.6.11
  • 46.99
  • Published

@soos-io/soos-sbom

Upload your Software Bill of Materials (SBOM) to SOOS for vulnerability analysis, license matching and more. Register for a free trial today at https://app.soos.io/register

  • v1.2.4
  • 42.94
  • Published

npm-audit-plus-plus

A tool to capture the output of npm audit and convert it to xml

  • v1.1.1
  • 42.49
  • Published

is-website-vulnerable

finds publicly known security vulnerabilities in a website's frontend JavaScript libraries

  • v1.14.10
  • 39.99
  • Published

ubon

Security scanner for AI-generated React/Next.js and Python apps. Catches hardcoded secrets, accessibility issues, and vulnerabilities that traditional linters miss.

  • v1.1.2
  • 34.68
  • Published

ssvc

TypeScript implementation of SSVC (Stakeholder-Specific Vulnerability Categorization). A prioritization framework to triage CVE vulnerabilities as an alternative or compliment to CVSS

  • v0.3.2
  • 30.21
  • Published

qualscan

Scan your project to find quality issues

  • v3.1.9
  • 27.78
  • Published

npm-audit-excel

Generate Excel reports from npm audit with prioritization and multi-language support

  • v2.0.0
  • 27.62
  • Published

dr-dep-audit

Audit npm dependencies for outdated packages and vulnerabilities with a fast, colorized CLI. Supports config files, GitHub Actions annotations, and CI/CD integration with automatic failure on high/critical issues.

  • v0.0.3
  • 26.82
  • Published

@jitesoft/audit-for-gitlab

Minimal application to convert npm audit report into gitlab-ci vulnerability report format.

  • v4.0.1
  • 26.62
  • Published

npm-audit-reporter

This project builds on top of the existing `npm audit` functionality by providing additional features and presenting audit reports in various formats such as HTML, JSON, and tables.

  • v2.0.1
  • 25.34
  • Published

npm-audit-plus-uis

A wrapper around NPM's built-in audit that adds extra features

  • v0.2.93
  • 24.56
  • Published

npm-epss-audit

Use EPSS scores to prioritize NPM Audit findings

  • v0.0.13
  • 22.04
  • Published

supertest-security

It's a library that allows us to test api endpoints by fuzzing them with malicious payloads that you can choose. It bases on `supertest` package.

    • v1.0.1
    • 20.15
    • Published

    pie-my-vulns

    Visualize your project security vulnerabilities as a pie chart in the terminal

    • v1.6.11
    • 18.80
    • Published

    depdrift

    A tool to analyze dependency drift in JavaScript projects

    • v0.1.0
    • 18.10
    • Published

    security-report

    a CLI to quickly report a security vulnerability

    • v1.1.4
    • 17.94
    • Published

    npm-dependency-analyzer

    Plugin to validate dependencies, concerning their license and vulnerabities

    • v0.7.0
    • 16.22
    • Published

    @soos-io/sample-project

    SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this package is an example of a vulnerable package on a public registry.

    • v1.1.4
    • 15.10
    • Published

    snyker

    An opinionated, heavy-handed wrapper around Snyk.

    • v5.0.3
    • 13.91
    • Published

    @luciddr34m3r/nvd

    A JavaScript library for dealing with NVD, CVEs, and CPE strings.

    • v0.0.1
    • 13.73
    • Published

    secure-dep-scanner

    A comprehensive security scanner for detecting suspicious dependencies, malicious packages, and vulnerabilities in Node.js projects.

    • v1.1.2
    • 13.55
    • Published

    certfr-loader

    Module to load certfr from the CERT FR

    • v2.0.6
    • 12.93
    • Published

    @asos/snyker

    An opinionated, heavy-handed wrapper around Snyk.

    • v5.1.0
    • 12.14
    • Published

    olynpm

    Fitness App for your npm projects.

    • v0.1.8
    • 12.14
    • Published

    js-vulns-detector

    Inject JS to the DOM to find vulnerable JavaScript libraries

    • v1.0.6
    • 11.34
    • Published

    snyk-recursive

    Run Snyk recursively in valid subdirectories.

    • v0.0.12
    • 10.94
    • Published

    @jitesoft/gitlab-dep-convert

    Tiny converter to convert npm audit report into gitlab-ci dependency report format.

      • v0.0.1
      • 10.64
      • Published

      eslint-plugin-codesink

      Detect common javascript sinks that lead to web application vulnerabilities.

      • v1.0.12
      • 9.39
      • Published

      npmaudit2slack

      Post results from npm audit to a Slack channel

      • v1.0.0-beta.5
      • 8.73
      • Published

      gh-sec

      Github security alerts CLI

      • v1.0.0-beta.1
      • 8.65
      • Published

      osv-npm-scan

      Scan package.json vulnerabilities in OSV Databases

      • v1.0.0
      • 8.65
      • Published

      tfv-nvd-types

      National Vulnerability Database typescript definitions for data feeds.

      • v1.3.0
      • 7.31
      • Published

      npm-check-plus

      Project audit utility with CLI and API interfaces that checks vulnerabilities, dependencies, and updates.

      • v1.0.0-alpha.5
      • 6.95
      • Published

      @soos-io/sample-project-node-package-fetch

      SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this tool is an example of fetching package information from SOOS.

      • v1.0.2
      • 6.92
      • Published

      @soos-io/sample-project-node-license-fetch

      SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this tool is an example of fetching software license information from SOOS.

      • v1.0.1
      • 6.20
      • Published

      audit-ignore

      NPM Audit Ignore - Keep CI Scanning!

      • v0.0.2
      • 5.80
      • Published

      defendjs

      Middleware to detect and alert security vulnerabilities in real-time development mode

        • v1.0.0
        • 5.77
        • Published

        scansafe

        Scans source code packages for potential javascript vulnerabilities listed as strings or regular expressions.

        • v1.0.1
        • 4.33
        • Published

        @vapurrmaid/smorgasbord

        Smorgasbord checks for a variety of served files that should not be exposed.

        • v0.5.1
        • 2.70
        • Published

        @soos-io/sample-project-node-vulnerability-fetch

        SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this tool is an example of fetching vulnerability information from SOOS.

        • v1.0.1
        • 2.60
        • Published

        windows-vulnerabilities

        Get the number of known security vulnerabilities for your current windows 10 version

        • v0.0.22
        • 2.56
        • Published

        audit-plus

        Bring back the missing features of NSP to NPM Audit

        • v0.1.3
        • 2.53
        • Published

        nucleaus

        CLI which can be used to interface with Nucleaus. Initiate scans, retrieve scan results, etc.

          • v2.0.1
          • 0.00
          • Published

          auditly

          Visualization tool for npm audit.

          • v1.1.1
          • 0.00
          • Published