risk 20/100 · low

npm · @t-in-one/prefill_bundle_data_token

1 known advisory.

Risk score: 20/100

Transparent, additive — every input shown:

Worst severity
+20
Worst CVSS
+0
Exploited in the wild
+0
Exploit probability (EPSS)
+0

Advisories

Stateward checks every dependency on every pull request and flags @t-in-one/prefill_bundle_data_token only if your code actually reaches the vulnerable path.

Scan my repo

Sources: CISA KEV (public domain), OSV.dev & GitHub Advisory Database (CC-BY-4.0), FIRST EPSS, NVD/CWE (public domain). Served live from the Stateward advisory database.