hapijs joi
4 known vulnerabilities in hapijs joi, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-92599 CVSS 8.7 high joi (npm package `joi`, hapi.js) versions >=17.2.0 <17.13.7 and >=18.0.0 <18.2.6 are vulnerable to regular expression denial of service in…
- CVE-2026-90771 CVSS 6.3 medium joi before versions 17.13.8 and 18.2.9 contains a prototype pollution vulnerability in the messages compilation function that accepts…
- CVE-2026-84368 CVSS 3.7 low joi is a schema description language and data validator for JavaScript. From 16.0.0 until 17.13.6 and 18.2.5, the @hapi/joi package…
- CVE-2026-84367 CVSS 3.7 low joi is a schema description language and data validator for JavaScript. From 16.0.0 until 17.13.5 and 18.2.4, joi's lib/types/keys.js…