Home
Docs
GitHub
Get Sandworm Audit For Your App

🪱 Sandworm Audit For Your App

Run npx @sandworm/audit@latest in your app directory to generate an audit report.

We're launching Audit-as-a-service in the cloud soon! Register for early access:

express 2.1.0

Sinatra inspired web development framework
Package Created
29 Dec 2010
Maintainers
3
Version Published
24 Mar 2011
Dependencies
12
Total Versions
270
License
UNKNOWN

Issues

10

critical 3 critical severity issues

  • connect@1.9.2
    Package has no specified license Recommendation: Check the package code and files for license information
    via: connect@1.9.2
  • express@2.1.0
    Package has no specified license Recommendation: Check the package code and files for license information
    via: express@2.1.0
  • formidable@1.0.17
    Package has no specified license Recommendation: Check the package code and files for license information
    via: connect@1.9.2

high 3 high severity issues

  • connect@1.9.2
    Deprecated package
    via: connect@1.9.2
  • express@2.1.0
    Deprecated package
    via: express@2.1.0
  • formidable@1.0.17
    Deprecated package
    via: connect@1.9.2

moderate 3 moderate severity issues

low one low severity issue

methodOverride Middleware Reflected Cross-Site Scripting in connect
Recommendation: Upgrade to version 2.8.1 or later
connect@1.9.2 via: connect@1.9.2

https://github.com/advisories/GHSA-3fw8-66wf-pr7m

Licenses

MIT License

Permissive OSI Approved

Can: commercial-use modify distribute sublicense private-use
Cannot: hold-liable
Must: include-copyright include-license

call-bind@1.0.2 function-bind@1.1.1 get-intrinsic@1.2.0 has-symbols@1.0.3 has@1.0.3 mime@3.0.0 object-inspect@1.12.3 side-channel@1.0.4

N/A

N/A
connect@1.9.2 express@2.1.0 formidable@1.0.17

BSD 3-Clause "New" or "Revised" License

Permissive OSI Approved

Can: commercial-use modify distribute place-warranty
Cannot: use-trademark hold-liable
Must: include-copyright include-license

qs@6.11.1

Dependencies

12
Name Version Size License Type Vulnerabilities
call-bind 1.0.2 5.24 kB MIT prod
connect 1.9.2 75.28 kB UNKNOWN prod 221
express 2.1.0 24.48 kB UNKNOWN prod 113
formidable 1.0.17 12.04 kB UNKNOWN prod 11
function-bind 1.1.1 6.15 kB MIT prod
get-intrinsic 1.2.0 11.34 kB MIT prod
has-symbols 1.0.3 6.9 kB MIT prod
has 1.0.3 1.52 kB MIT prod
mime 3.0.0 18.25 kB MIT prod
object-inspect 1.12.3 25.31 kB MIT prod
qs 6.11.1 50.74 kB BSD-3-Clause prod
side-channel 1.0.4 5.51 kB MIT prod