583,569 packages matching “path-traversal”
path-sanitizer
v4.0.2 · 1 month ago
A simple lightweight npm package for sanitizing paths to prevent Path Traversal
No known vulnerabilities
@blackunicorn/bonklm-daytona
v1.0.16 · 1 month ago
Daytona Workspace wrapper for BonkLM. Proxies process.* + fs.* with code-injection + path-traversal validation. EXPERIMENTAL (Story 3.5).
No known vulnerabilities
@blackunicorn/bonklm-e2b
v1.0.16 · 1 month ago
E2B Sandbox wrapper for BonkLM. Proxies commands.run / runCode / files.* with code-injection + path-traversal validation. EXPERIMENTAL (Story 3.5).
No known vulnerabilities
@effected/walker
v0.9.0 · 5 days ago
Path traversal as Effect primitives: ascend a directory chain to the first matching candidate, or descend a tree expanding a glob against the filesystem.
No known vulnerabilities
object-path-plus
v1.3.1 · 8 years ago
Object path traversal with concatenation
No known vulnerabilities
@polarise/pathwash
v1.2.0 · 2 months ago
Clean dirty archive and upload paths: Windows backslash zip entries, macOS junk files, directory markers, path traversal, and URL-unsafe filenames.
No known vulnerabilities
eslint-plugin-node-security
v5.6.1 · 3 days ago
ESLint plugin for Node.js security — detects command injection, path traversal, SSRF, zip slip, and weak crypto (MD5/SHA-1, ECB, static IV) in fs, child_process, vm, and crypto.
No known vulnerabilities
@centient/path-security
v0.1.0 · 3 months ago
Path-traversal validation and path-component sanitization with a Result-typed API
No known vulnerabilities
reflect-deep
v2.1.1 · 19 days ago
Deep property manipulation utilities with robust cloning, path traversal, and property access for JavaScript/TypeScript objects.
No known vulnerabilities
@opengovsg/validators
v1.4.1 · 1 month ago
A set of [zod](https://zod.dev/)-based validators providing sensible defaults to prevent common security vulnerabilities: path traversal, open redirects, XSS, and SSRF. Each validator is its own subpath export, so you only pull in what you use.
No known vulnerabilities
@sophiacave/mcp-shield
v1.0.7 · 3 months ago
Security scanner for MCP servers. Detects SSRF, path traversal, injection vulnerabilities. Snyk for MCP.
No known vulnerabilities
electron-renderer-protocol
v0.2.0 · 27 days ago
A hardened custom protocol for serving an Electron renderer bundle, with path-traversal protection, CSP defaults, and SPA fallback.
No known vulnerabilities
express-defend
v1.0.9 · 10 years ago
Express middleware that detects malicious requests, like XSS or Path Traversal
No known vulnerabilities
contains-path-traversal
v0.0.1 · 1 year ago
🚶 Does this string contain path traversal?
No known vulnerabilities
path-scurry
v2.0.2 · 7 months ago
walk paths fast and efficiently
No known vulnerabilities
mitigator
v1.0.4 · 5 days ago
A production-grade, security-first TypeScript library for Node.js. Defends against XSS, Prototype Pollution, Path Traversal, SQL/NoSQL Injection, and more. Includes adaptive rate limiting, WebAuthn/Passkeys, AES-256-GCM sessions, and post-quantum cryptogr
No known vulnerabilities
secure-path
v1.0.1 · 5 months ago
TypeScript-powered secure path resolution with browser support - prevents path traversal attacks
No known vulnerabilities
logsguardian
v0.1.0 · 19 days ago
Middleware RASP de deteccion de amenazas (SQLi, XSS, Path Traversal, Command Injection) para Node.js/Express, con inferencia ONNX (Random Forest + Isolation Forest)
No known vulnerabilities
@infoinlet/mcp-filesystem
v0.1.1 · 3 months ago
Hardened filesystem access for AI agents — jailed to an allowed root, read-only by default, path-traversal + symlink-escape protected. MCP server.
No known vulnerabilities
cloudist
v2.4.5 · 24 days ago
Simple WAF Web App Firewall, middleware for Node.js — blocks SQLi, XSS, path traversal, command injection & bots, with a waf-style browser check, framework-agnostic
No known vulnerabilities