@sveltejs/kit
SvelteKit is the fastest way to build Svelte apps
Security Advisories for @sveltejs/kit in npm
Moderate
about 2 months ago
@sveltejs/kit: Unvalidated redirect in handle hook causes Denial-of-Service
npm
@sveltejs/kit
Low
3 months ago
SvelteKit has deserialization expansion in unvalidated `form` remote function leading to Denial of Service (experimental only)
npm
@sveltejs/kit
Moderate
3 months ago
CPU exhaustion in SvelteKit remote form deserialization (experimental only)
npm
@sveltejs/kit
Moderate
3 months ago
Memory exhaustion in SvelteKit remote form deserialization (experimental only)
npm
@sveltejs/kit
High
5 months ago
@sveltejs/kit has memory amplification DoS vulnerability in Remote Functions binary form deserializer (application/x-sveltekit-formdata)
npm
@sveltejs/kit
High
5 months ago
SvelteKit is vulnerable to denial of service and possible SSRF when using prerendering
npm
@sveltejs/adapter-node, @sveltejs/kit
Moderate
about 1 year ago
@sveltejs/kit vulnerable to Cross-site Scripting via tracked search_params
npm
@sveltejs/kit
Low
over 1 year ago
@sveltejs/kit has unescaped error message included on error page
npm
@sveltejs/kit
High
over 2 years ago
Sending a GET or HEAD request with a body crashes SvelteKit
npm
@sveltejs/adapter-node, @sveltejs/kit
High
about 3 years ago
SvelteKit framework has Insufficient CSRF protection for CORS requests
npm
@sveltejs/kit