path-to-regexp-updated has critical vulnerabilities — do not use
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| critical | MAL-2026-1808 | Malicious code in path-to-regexp-updated (npm) | — |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/npm/path-to-regexp-updatedFirst published · 2025-12-04T21:32:57.747Z