GHSA-qm9p-f9j5-w83w
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
npm parcel 2.0.0-alpha and before has an Origin Validation Error vulnerability. Malicious websites can send XMLHTTPRequests to the application's development server and read the response to steal source code when developers visit them.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: September 18, 2025 6:29 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.