Ecosyste.ms: OpenCollective

An open API service for software projects hosted on Open Collective.

github.com/sveltejs/kit

web development, streamlined
https://github.com/sveltejs/kit

Low
GSA_kwCzR0hTQS1yamp2LTg3bXgtNngzaM4ABBvG
@sveltejs/kit vulnerable to on dev mode 404 page
Ecosystems: npm
Packages: @sveltejs/kit
Source: github
Published: 3 months ago
Low
GSA_kwCzR0hTQS1taDJ4LWZjcWgtZm1xds4ABBvF
@sveltejs/kit has unescaped error message included on error page
Ecosystems: npm
Packages: @sveltejs/kit
Source: github
Published: 3 months ago
High
GSA_kwCzR0hTQS1nNW02LWh4cHAtZmM0Oc4AA4qX
Sending a GET or HEAD request with a body crashes SvelteKit
Ecosystems: npm
Packages: @sveltejs/adapter-node, @sveltejs/kit
Source: github
Published: about 1 year ago
High
GSA_kwCzR0hTQS1ndjdnLXg1OXgtd2Y4Zs4AAyoO
SvelteKit framework has Insufficient CSRF protection for CORS requests
Ecosystems: npm
Packages: @sveltejs/kit
Source: github
Published: almost 2 years ago
High
GSA_kwCzR0hTQS01cDc1LXZjNWctOHJ2Ms4AAyiw
SvelteKit vulnerable to Cross-Site Request Forgery
Ecosystems: npm
Packages: @sveltejs/kit
Source: github
Published: almost 2 years ago