Live data from GitHub and npm, updated daily.
Data last fetched: 2026-05-15
1 active CVE reported via OSV.dev
Vitest allows Remote Code Execution when accessing a malicious website while Vitest API server is listening
Other Testing projects in the Node.js ecosystem worth evaluating.
Get SLA-backed support, security patches, and direct access to senior engineers for Vitest โ without relying on volunteer maintainers.
Talk to an Expert โ