The newest npm security advisories as machine-readable JSON: severity, CVSS score and vector, CWEs, affected packages, vulnerable ranges and first patched version. Merged from two GitHub Advisory Database orderings, most recently published and most recently revised, so a newly assigned CVSS or a widened vulnerable range reaches you even when the advisory is months old. Add ?since=<ISO-8601> for only what changed; an empty delta is refused free, so polling costs nothing until there is news.
| Network | Scheme | Amount | Pay To |
|---|---|---|---|
| Base | exact | $0.02 USDC | 0x470a...4c6b |