pkg:npm/mongoose
7 total CVEsCRITICAL5HIGH2
✅ Check your installed version
All known vulnerabilities
- >= 7.0.0, < 7.3.3
- >= 8.0.0-rc0, < 8.8.3
- >= 6.0.0, < 6.4.6
- >= 5.0.0, < 5.7.5
- >= 8.0.0-rc0, < 8.9.5
- HIGH7.5CVE-2026-42334Mongoose's Improper Sanitization of $nor in sanitizeFilter May Allow NoSQL Injectionfrom 0, < 6.13.9
- >= 6.0.0, < 6.4.6