5 Total advisories
5 Vulnerabilities
0 Malware
Dependency scanning
Check whether node-opcua is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
HIGH 7.5
CVE-2026-54156
node-opcua: Unbounded nonce cache enables unauthenticated heap exhaustion DoS
HIGH 7.7
CVE-2026-54155
node-opcua missing nonce verification in UserNameIdentityToken authentication
HIGH 7.5
CVE-2022-25231
node-opcua DoS vulnerability via message with memory allocation that exceeds v8's memory limit
HIGH 7.5
CVE-2022-24375
node-opcua DoS when bypassing limitations for excessive memory consumption
HIGH 7.5
CVE-2022-21208
Uncontrolled Resource Consumption in node-opcua
Browse more npm advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes