This package helps ensure the security of your Node.js installation by checking for known vulnerabilities. It compares the version of Node.js you have installed (process.version) to the Node.js Security Database and alerts you if a vulnerability is found. Usage: npx is-my-node-vulnerable It's strongly recommended to include this as a step in the app CI. Output - When vulnerable: $ node -v v20.3.0 $ npx is-my-node-vulnerable █████ █████ ███ ██ ██████ ███████ ██████ ██ ██ ██ ██ ████ ██ ██ ██ ██ ██ ██ ██ ███████ ██ ██ ██ ██ ███ █████ ██████ ██ ██ ██ ██ ██ ██ ██ ██ ██ ██ ██ ██ ██████ ██ ██ ██ ████ ██████ ███████ ██ ██ The current Node.js version (v20.3.0) is vulnerable to the following CVEs: CVE-2023-30581: The use of proto in process.mainModule.proto.require() can bypass the policy mechanism and require modules outside of the policy.json definition Patched versions: ^16.20.1 || ^18.16.1 || ^20.3.1 Output - When non-vulnerable: $ node -v v20.11.1 $ npx is-my-node-vulnerable █████ ██ ██ ████
Common questions about is-my-node-vulnerable including features, pricing, alternatives, and user reviews.
is-my-node-vulnerable is Check for known vulnerabilities in your Node.js installation. It is a Vulnerability Management solution designed to help security teams with Nodejs.
is-my-node-vulnerable is a free Vulnerability Management tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/RafaelGSS/is-my-node-vulnerable/ for download and installation instructions.
Popular alternatives to is-my-node-vulnerable include:
Compare these tools and more at https://cybersectools.com/categories/vulnerability-management
is-my-node-vulnerable is for security teams and organizations that need Nodejs. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Vulnerability Management tools can be found at https://cybersectools.com/categories/vulnerability-management
Agentless cloud vulnerability management with unified context and prioritization
Vulnerability scanner for internal & external network security assessment
IT risk mgmt toolkit for network assessment, vuln scanning & compliance