VYPR

npm package

@logto/tunnel

pkg:npm/%40logto/tunnel

Vulnerabilities (1)

  • CVE-2026-63188HigAug 19, 2026
    affected < 0.3.9fixed 0.3.9

    Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 0.3.9, the Logto Tunnel npm package enabled createStaticFileProxy from packages/tunnel/src/commands/tunnel/index.ts and passed request.url from static asset requests through packages/tunnel/src/co