Skip to content

NPM Audit Report

Generation Date: 11.8.2026 - 15:22:05

Vulnerabilities

Vulnerabilities are known security weaknesses of dependencies and are categorized by severity:

  • Critical: Exploitable with severe impact, requiring immediate action.
  • High: Significant risk, should be addressed promptly.
  • Moderate: Requires specific conditions to exploit, but should still be remediated.
  • Low: Minor risk with limited impact.
PackageSeverityURLRangeEffectsFix Available
nanoidhighhttps://github.com/advisories/GHSA-28wg-ghj8-5hjv<=3.3.16-true
postcsshighhttps://github.com/advisories/GHSA-qx2v-qp2m-jg93<=8.5.22-true
preacthighhttps://github.com/advisories/GHSA-36hm-qxxp-pg3m10.28.0 - 10.28.1-true
rolluphighhttps://github.com/advisories/GHSA-mw96-cpmx-2vgc4.0.0 - 4.58.0-true
vitehighhttps://github.com/advisories/GHSA-4w7w-66w2-5vf9<=6.4.2vitepressNo
wshighhttps://github.com/advisories/GHSA-58qx-3vcg-4xpx8.0.0 - 8.20.1-true
echartsmoderatehttps://github.com/advisories/GHSA-fgmj-fm8m-jvvx<6.1.0-echarts@6.1.0
esbuildmoderatehttps://github.com/advisories/GHSA-67mh-4wv8-2f99<=0.24.2viteNo
protocol-buffers-schemamoderatehttps://github.com/advisories/GHSA-j452-xhg8-qg39❤️.6.1-true
vitepressmoderate-<=1.6.4-No

Outdated Dependencies

Regular updates are a core requirement of the EU Cyber Resilience Act (CRA), which mandates timely delivery of security patches. Keeping dependencies current reduces the attack surface and ensures the project benefits from the latest improvements.

Update TypeCountRisk
Major (breaking changes possible)6Test thoroughly
Minor (new features)3Low risk
Patch (bug fixes)1Safe to update
Total outdated10

Major Updates

Major version changes may include breaking API changes. Review changelogs before updating.

PackageCurrentWantedLatest
@journeyapps/wa-sqlite1.5.01.7.22.0.2
@powersync/web1.35.01.39.12.1.1
echarts5.6.05.6.06.1.0
maplibre-gl5.15.05.24.06.3.0
vue-i18n9.14.59.14.511.4.2
vuetify3.11.43.13.14.1.8

Minor Updates

Minor updates add new features in a backward-compatible manner.

PackageCurrentWantedLatest
@supabase/supabase-js2.89.02.109.02.109.0
@turf/turf7.3.17.4.07.4.0
esbuild0.27.20.27.70.28.2

Patch Updates

Patch updates contain bug fixes and are generally safe to apply.

PackageCurrentWantedLatest
vite-plugin-vuetify2.1.22.1.32.1.3