Known vulnerabilities in CLI

Vendor: npm Inc.
Software: CLI
Software CPE: cpe:2.3:a:npm:cli:*:*:*:*:*:npm:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting CLI CLI is affected by 4 known vulnerabilities: 1 high, 1 medium, 2 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU121562 - Permissions, Privileges, and Access Controls
CVE-2026-0775
CWE-264 Low
No
No
- 15.01.2026 SB2026011522
SB2026033160
#VU63842 - Insufficient Verification of Data Authenticity
CVE-2021-43616
CWE-345 High
No
No
8.4.1 31.05.2022 SB2021111301
SB2022060131
SB2022103132
and 7 more
#VU47355 - Information Exposure Through Log Files
CVE-2020-15095
CWE-532 Low
No
No
6.14.6 07.07.2020 SB2020070743
SB2020100608
SB2020101002
and 12 more
#VU21761 - Exposure of sensitive information to an unauthorized actor
CVE-2016-3956
CWE-200 Medium
No
No
2.15.1, 3.8.3 14.10.2019 SB2016070205