7 Total advisories
7 Vulnerabilities
0 Malware
Dependency scanning
Check whether lunary is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
MEDIUM 4.3
CVE-2024-6867
Withdrawn Advisory: Lunary information disclosure vulnerability
HIGH 7.4
CVE-2024-6862
Withdrawn Advisory: Lunary Cross-Site Request Forgery (CSRF) vulnerability
MEDIUM 6.5
CVE-2024-6582
Withdrawn Advisory: Lunary Improper Authentication vulnerability
MEDIUM 6.5
CVE-2024-6087
Withdrawn Advisory: Lunary improper access control vulnerability
CRITICAL 9.8
CVE-2024-4146
lunary-ai/lunary allows users unauthorized access to projects
HIGH 7.4
CVE-2024-5478
Withdrawn Advisory: lunary-ai/lunary XSS in SAML metadata endpoint
CRITICAL 9.3
CVE-2024-5389
lunary-ai/lunary Access Control Vulnerability in Prompt Variation Management
Browse more npm advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes