Uglifyjs Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 3
    Known Exploited: 0
    2
    Critical Level Threats
    1
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2022-37598

    uglify-js: Prototype pollution vulnerability in function DEFNODE in ast.js

    Last Modified: Nov 21, 2024
    Published: Oct 20, 2022

    CVE-2015-8857

    The uglify-js package before 2.4.24 for Node.js does not properly account for non-boolean values when rewriting boolean expressions, which might allow attackers to bypass security mechanisms or possibly have unspecified other impact by leveraging improperly rewritten Javascript.

    Last Modified: Apr 20, 2025
    Published: Jan 23, 2017

    CVE-2015-8858

    The uglify-js package before 2.6.0 for Node.js allows attackers to cause a denial of service (CPU consumption) via crafted input in a parse call, aka a "regular expression denial of service (ReDoS)."

    Last Modified: Apr 20, 2025
    Published: Jan 23, 2017
    Items Per Page
    Uglifyjs_Project Vulnerabilities & Security CVEs | CVE-DB