pg
115 known vulnerabilities · 2 critical · 6 high
OpenZeppelin Contracts TransparentUpgradeableProxy clashing selector calls may not be delegated
Malicious code in pgserve (npm)
[thi.ng/egf] Potential arbitrary code execution of `#gpg`-tagged property values
OpenZeppelin Contracts and Contracts Upgradeable duplicated execution of subcalls in v4.9.4
Malicious code in anpgvytdohnmusxxexicyoojcrmmzvartwuisqqtnaqolfyddhcfkpnrncyc (npm)
Malicious code in upgrade-challenge (npm)
Malicious code in usakiedqpgbhyonj (npm)
Capgo CLI: symlink-following local secret writes enable arbitrary file overwrite + world-readable credentials (0600 missing)
Malicious code in dpgs (npm)
Malicious code in ojqmdtzpguxshkeb (npm)
Malicious code in xedvhtkmspgzwkfy (npm)
UUPSUpgradeable vulnerability in @openzeppelin/contracts
Malicious code in @zitterorg/upgraded-fishstick (npm)
Malicious code in @hapheus/n8n-nodes-pgp (npm)
Malicious code in winston-pg-native (npm)
Malicious code in abenoypgxdqlmkwk (npm)
Malicious code in uppgrade (npm)
Malicious code in django-pgaas (npm)
Malicious code in dowload_ebok_women_who_run_with_the_wolves_by_clarissa_pinkola_estes_phd_p7pgi (npm)
Malicious code in dhpgemrdhs92007 (npm)
Malicious code in dhpgemrdhs92009 (npm)
Malicious code in ldhpgemrdhs95005 (npm)
Malicious code in kvpair_db_upgrade (npm)
Malicious code in dhpgemrdhs51214 (npm)
Malicious code in dhpgemrdhs60015 (npm)
Malicious code in dhpgemrdhs60152 (npm)
Malicious code in dhpgemrdhs92010 (npm)
Malicious code in dhpgemrdhs92011 (npm)
Malicious code in dhpgemrdhs92092 (npm)
Malicious code in dhpgemrdhs94006 (npm)
Malicious code in osmwedfvhtpgxzaj (npm)
OpenClaw voice-call media stream validated streams after upgrade, which could allow pre-start unauthenticated sockets to increase resource pressure
Malicious code in syzzfpmkizkljkiibpgb (npm)
OpenClaw `device.token.rotate` mints tokens for unapproved roles, bypassing device role-upgrade pairing
Malicious code in rqndoxabkthupgik (npm)
Malicious code in payable-js-ipg-sdk (npm)
Malicious code in web3-upgrade (npm)
OpenClaw: Gateway WebSocket Denial of Service via unbounded pre-auth upgrades
Malicious code in dai-pg (npm)
pg-native and libpq vulnerable to uncontrolled resource consumption
Malicious code in solara-upgrade (npm)
Malicious code in dhpgemrdhs92004 (npm)
Malicious code in dhpgemrdhs92006 (npm)
Malicious code in ldhpgemrdhs51214 (npm)
Malicious code in ldhpgemrdhs60015 (npm)
Malicious code in ldhpgemrdhs60214 (npm)
Malicious code in ldhpgemrdhs79029 (npm)
Malicious code in ldhpgemrdhs60152 (npm)
Malicious code in ldhpgemrdhs92007 (npm)
Malicious code in ldhpgemrdhs92009 (npm)
Malicious code in ldhpgemrdhs92010 (npm)
Malicious code in ldhpgemrdhs95006 (npm)
Malicious code in @spgy/eslint-plugin-spgy-fe (npm)
Malicious code in ldhpgemrdhs94010 (npm)
Malicious code in helium-pgbouncer (npm)
Malicious code in sharpgl (npm)
Malicious code in ctijdpgxrhqaknso (npm)
Malicious code in ainruohkpglvwsmj (npm)
Malicious code in ldhpgemrdhs92004 (npm)
Malicious code in ldhpgemrdhs92006 (npm)
Malicious code in ldhpgemrdhs92011 (npm)
Malicious code in @xvideos/upgrade (npm)
Malicious code in hwzpgf (npm)
Malicious code in ldhpgemrdhs84006 (npm)
Malicious code in cpg-nordic (npm)
Malicious code in ldhpgemrdhs94006 (npm)
Malicious code in ldhpgemrdhs83600 (npm)
Malicious code in @tpgroup/tpg-icon-inventory (npm)
Malicious code in hrdebjywvtkmcpga (npm)
Malicious code in pg-ng-popover (npm)
Malicious code in @pgc-web/web-creation (npm)
Malicious code in pgifo (npm)
Malicious code in pgk (npm)
Malicious code in pgovlicdntbzhskr (npm)
Malicious code in pgrcizmyxjbefkut (npm)
Malicious code in pgu (npm)
Malicious code in pguzvbahliyfwejk (npm)
Malicious code in fiapgcxeqyotukhz (npm)
Malicious code in filtetypg (npm)
Malicious code in rdeepgextend (npm)
Malicious code in auth-1s7epg (npm)
Malicious code in sainzpgwflumkdbc (npm)
Malicious code in kcupgbynzelovifq (npm)
Malicious code in payable-js-ipg-sdk-suba (npm)
Malicious code in knmkyipgcltveqdj (npm)
Malicious code in krmlpgntjfvesahi (npm)
Malicious code in kxtupghkymwldfic (npm)
Malicious code in @trackstar/react-trackstar-link-upgrade (npm)
Automatic room upgrade handling can be used maliciously to bridge a room non-consentually
Malicious code in calc_bx9d74rupg (npm)
Malicious code in ghpglobaldata (npm)
Malicious code in hpglobaldata (npm)
Malicious code in dhpgemrdhs60214 (npm)
Malicious code in dhpgemrdhs84006 (npm)
Malicious code in upgrade-solara (npm)
Malicious code in dhpgemrdhs95006 (npm)
Malicious code in ldhpgemrdhs92092 (npm)
Malicious code in pkg1bate5apg1 (npm)
Malicious code in dhpgemrdhs79029 (npm)
Malicious code in dhpgemrdhs83600 (npm)
Malicious code in upgrade-mobile (npm)
Malicious code in dhpgemrdhs94010 (npm)
Malicious code in dhpgemrdhs95005 (npm)