Sindresorhus Vulnerabilities

Comprehensive security vulnerability database for Sindresorhus products

Last updated: Jul 21, 2022
Total CVEs

1

Critical

0

With Exploits

0

Last 30 Days

0

Severity Distribution

Critical0
0%
High0
0%
Medium1
100%
Low0
0%
DescriptionVendor / ProductExploit Status
CVE-2022-363135.5

An attacker can exploit a flaw in the file-type package to make an application hang or crash by sending it a specially crafted MKV file. This requires the application to use the vulnerable version of the file-type package, allowing the attacker to disrupt service and cause downtime.

sindresorhusfile-type
Theoretical
over 3 years agoJul 21, 2022

About Sindresorhus Security

This page tracks all publicly disclosed security vulnerabilities (CVEs) affecting Sindresorhus products. Our database is updated in real-time from the National Vulnerability Database (NVD) and enriched with exploit information from GitHub and other security research sources.

Each CVE listing includes CVSS severity scores, exploit availability status, AI-powered vulnerability summaries, and links to official patches and security advisories.