Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
npm/devalue — 5 CVEs · VulnScope
pkg:npm/
devalue
5 total CVEs
HIGH
3
✅ Check your installed version
Check
All known vulnerabilities
HIGH
7.5
CVE-2026-42570
Svelte devalue: DoS via sparse array deserialization
>= 5.6.3, < 5.8.1
HIGH
7.5
CVE-2026-22775
devalue vulnerable to denial of service due to memory/CPU exhaustion in devalue.parse
>= 5.1.0, < 5.6.2
HIGH
7.5
CVE-2026-22774
Devalue is vulnerable to denial of service due to memory exhaustion in devalue.parse
>= 5.3.0, < 5.6.2
—
CVE-2026-30226
devalue has prototype pollution in devalue.parse and devalue.unflatten
from 0, < 5.6.4
—
devalue prototype pollution vulnerability
from 0, < 5.3.2
CVE-2025-57820