41
Security score
5 known advisories in v1.0.0-master.080796c
OpenSSF Scorecard 6.5/10
Weekly downloads
—
Unpacked size
18.6 MB
Dependencies
82
Last publish
1 day ago
Security advisories
- rsshub vulnerable to Cross-site Scripting via unvalidated URL parametersmoderate
GHSA-32gr-4cq6-5w5q · fixed in 1.0.0-master.c910c4d
- RSSHub vulnerable to Server-Side Request Forgerymoderate
GHSA-3p3p-cgj7-vgw3 · fixed in 1.0.0-master.a429472
- RSSHub SSRF vulnerabilityhigh
GHSA-64wp-jh9p-5cg2 · fixed in 1.0.0-master.a66cbcf
- Denial of Service (DoS) vulnerability in RSSHubmoderate
GHSA-jvxx-v45p-v5vf
- Risk of code injectionhigh
GHSA-pgjj-866w-fc5c
OpenSSF ScorecardJul 20, 2026
- Maintained10
- Code-Review5
- CII-Best-Practices0
- Security-Policy10
- Dangerous-Workflow10
- License10
- Token-Permissions0
- Branch-Protection0
- Binary-Artifacts10
- Pinned-Dependencies8
- SAST10
- Packaging10
- Fuzzing0