@nestjs/common
Advanced tools
+2
-2
| { | ||
| "name": "@nestjs/common", | ||
| "version": "11.1.18", | ||
| "version": "11.1.19", | ||
| "description": "Nest - modern, fast, powerful node.js web framework (@common)", | ||
@@ -41,3 +41,3 @@ "author": "Kamil Mysliwiec", | ||
| }, | ||
| "gitHead": "3c1cc5f91e95fcec27c3694cd42a08a50e85cc5f" | ||
| "gitHead": "67309956821c0626c050fe6725c90645d2577e3d" | ||
| } |
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 2 instances in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
Found 1 instance in 1 package
Dynamic require
Supply chain riskDynamic require can indicate the package is performing dangerous or unsafe dynamic code execution.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 2 instances in 1 package
Long strings
Supply chain riskContains long string literals, which may be a sign of obfuscated or packed code.
Found 1 instance in 1 package
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
Found 1 instance in 1 package