VYPR

npm package

@usebruno/cli

pkg:npm/%40usebruno/cli

Vulnerabilities (1)

  • CVE-2026-34841CriApr 6, 2026
    affected < 3.2.1fixed 3.2.1

    Bruno is an open source IDE for exploring and testing APIs. Prior to 3.2.1, Bruno was affected by a supply chain attack involving compromised versions of the axios npm package, which introduced a hidden dependency deploying a cross-platform Remote Access Trojan (RAT). Users of @u