326,075 packages matching “command injection”
iti
v0.8.0 · 10 months ago
~1kB Dependency Injection Library for Typescript and React with a unique async flow support
No known vulnerabilities
mongo-escape
v2.0.6 · 9 years ago
Escape variables to prevent NoSQL injection in MongoDB
No known vulnerabilities
@syncfusion/ej2-react-schedule
v34.2.4 · 7 days ago
Flexible scheduling library with more built-in features and enhanced customization options similar to outlook and google calendar, allowing the users to plan and manage their appointments with efficient data-binding support. for React
No known vulnerabilities
@suites/di.nestjs
v3.1.0 · 3 months ago
No description provided.
No known vulnerabilities
tsyringe-neo
v5.1.0 · 1 year ago
Lightweight dependency injection container for JavaScript/TypeScript
No known vulnerabilities
@deepseek-ai/dsh-client-runtime
v0.0.1-rc.1 · 15 days ago
Client core services: SlotsService, SessionsService (scope tree + object layer)
No known vulnerabilities
@syncfusion/ej2-angular-schedule
v34.2.4 · 7 days ago
Flexible scheduling library with more built-in features and enhanced customization options similar to outlook and google calendar, allowing the users to plan and manage their appointments with efficient data-binding support. for Angular
No known vulnerabilities
@cruxet/mcp-audit
v0.2.0 · 4 months ago
Local, zero-setup security linter for your MCP client configs. Catches command injection, hardcoded secrets, insecure transports, and known CVEs across Cursor, Claude, Windsurf, VSCode, Continue, Codex, and Zed. No account, no API calls, no data leaves yo
No known vulnerabilities
inversify-inject-decorators
v3.1.0 · 8 years ago
Lazy evaluated property injection decorators for InversifyJS
No known vulnerabilities
@deepkit/app
v1.0.19 · 11 months ago
Deepkit App, CLI framework and service container
No known vulnerabilities
@felix-neuro/eslint-plugin-routeguard
v0.1.1 · 3 months ago
ESLint plugin for Node.js API security — detects BOLA/IDOR, mass-assignment, SSRF, SQL injection, command injection, path traversal, open redirect, and hardcoded secrets across Express, Fastify, and NestJS.
No known vulnerabilities
langium
v4.3.1 · 1 month ago
A language engineering tool for the Language Server Protocol
No known vulnerabilities
@rspack/plugin-react-refresh
v2.0.2 · 2 months ago
React refresh plugin for Rspack
No known vulnerabilities
portless
v0.15.6 · 1 day ago
Replace port numbers with stable, named .localhost URLs. For humans and agents.
No known vulnerabilities
shescape
v3.0.2 · 24 days ago
simple shell escape library
No known vulnerabilities
@suites/unit
v3.1.1 · 3 months ago
<p align="center"> <img width="200" src="https://raw.githubusercontent.com/suites-dev/suites/master/logo.png" alt="Logo" /> </p>
No known vulnerabilities
@applitools/dom-snapshot
v4.18.1 · 2 days ago
No description provided.
No known vulnerabilities
@deepseek-ai/dsh-tool-jobs
v0.0.1-rc.3 · 13 days ago
Model-facing background job control tools (job_output, job_list, job_kill) over the ctx.jobs registry
No known vulnerabilities
esc-command
v1.0.0 · 3 years ago
escape command to prevent command injection vulnerabilities
No known vulnerabilities
@m8t-jacob/mcp-guard
v0.1.0 · 1 month ago
Static security scanner/linter for MCP (Model Context Protocol) servers: detects tool poisoning, prompt-injection surfaces, hardcoded secrets, command injection, and excessive permissions in server source code and tool manifests. CLI + GitHub Action, SARI
No known vulnerabilities