pkg:npm/convict

5 total CVEsCRITICAL1HIGH2

✅ Check your installed version

All known vulnerabilities

  • CRITICAL9.8CVE-2022-21190Prototype Pollution in convict
    from 0, < 6.2.3
  • HIGH8.4CVE-2023-0163convict vulnerable to Prototype Pollution
    from 0, < 6.2.4
  • HIGH8.4CVE-2022-22143Prototype Pollution in convict
    from 0, < 6.2.3
  • CVE-2026-33864Convict has Prototype Pollution via startsWith() function
    from 0, < 6.2.5
  • CVE-2026-33863Convict has prototype pollution via load(), loadFile(), and schema initialization
    from 0, < 6.2.5