This release includes breaking changes for platform teams planning a safe upgrade.
Published 12d
Vulnerability Scanning
✓ No known CVEs patched
✓ No known CVEs patched in this version
Topics
security
cve
javascript
nodejs
owasp
security-tools
Summary
AI summaryMalicious advisory findings now surface a clear removal message across all output modes.
Full changelog
Fixed
- Validated fix version now shown in the finding line and verbose table instead of the raw OSV hint, preventing confusing downgrade suggestions.
- Malicious advisory findings (
MAL-*) now surface a clear removal message across all output modes: inline hint in compact,⚠ Maliciousbadge and removal legend in verbose, and⚠ Maliciousbadge with tooltip in the HTML report.
Community Contributions
Thank you for @mcascone for reporting this issue.
Validation
- npm test
- npm run build
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About OWASP/cve-lite-cli
All releases →Related context
Related tools
Beta — feedback welcome: [email protected]