Information on source package node-ajv

Available versions

ReleaseVersion
bookworm6.12.6-3
trixie8.12.0~ds+~2.1.1-5
forky8.20.0~ds+~cs7.1.3-3
sid8.20.0~ds+~cs7.1.5-1

Open issues

BugbookwormtrixieforkysidDescription
CVE-2026-84394fixedvulnerable (no DSA)vulnerablefixedfast-uri accepts a host that contains an unbalanced or misplaced autho ...
CVE-2026-84292fixedvulnerable (no DSA)vulnerablefixedfast-uri serializes the port component of a URI without validating it. ...
CVE-2026-76172fixedvulnerable (no DSA)vulnerablefixedfast-uri is a URI parser for Node.js. During parsing it runs a legacy ...
CVE-2026-75975fixedvulnerable (no DSA)vulnerablefixedfast-uri is a URI parser for Node.js. Its custom parser for bracketed ...
CVE-2026-75931fixedvulnerable (no DSA)vulnerablefixedfast-uri is a URI parser for Node.js. It canonicalizes a host to its A ...
CVE-2026-75899fixedvulnerable (no DSA)vulnerablefixedfast-uri is a URI parser for Node.js. It decodes percent escapes in a ...
CVE-2026-18446fixedvulnerable (no DSA)fixedfixedfast-uri before 4.1.2, 3.1.5, and 2.4.4 requires a literal double forw ...
CVE-2026-16221fixedvulnerable (no DSA)fixedfixedImpact: fast-uri versions from 2.3.1 through 4.1.0 (including the 3.x ...
CVE-2026-13676fixedvulnerable (no DSA)fixedfixedfast-uri versions 2.3.1 through 3.1.2 and 4.0.0 fail to canonicalize U ...
CVE-2026-6322vulnerable (no DSA)vulnerable (no DSA)fixedfixedfast-uri normalize() decoded percent-encoded authority delimiters insi ...
CVE-2026-6321vulnerable (no DSA)vulnerable (no DSA)fixedfixedfast-uri decoded percent-encoded path separators and dot segments befo ...
CVE-2025-69873vulnerable (no DSA)vulnerable (no DSA)fixedfixedajv (Another JSON Schema Validator) before 8.18.0 is vulnerable to Reg ...

Resolved issues

BugDescription
CVE-2020-15366An issue was discovered in ajv.validate() in Ajv (aka Another JSON Sch ...

Search for package or bug name: Reporting problems