VYPR

@quasar/app-vite

by Quasarframework

CVEs (4)

  • CVE-2026-106105HigOct 6, 2026
    risk 0.48cvss —epss —

    Quasar Framework is a framework for building high-performance Vue.js user interfaces. Prior to @quasar/ssl-certificate 2.1.0, @quasar/cli 5.0.4, and @quasar/app-vite 3.3.0, the @quasar/ssl-certificate utility cached a combined private key and certificate PEM without explicitly…

  • CVE-2026-106107HigOct 6, 2026
    risk 0.47cvss —epss —

    Quasar Framework is a framework for building high-performance Vue.js user interfaces. Prior to 3.3.0, several @quasar/app-vite SSR and SSG rendering paths interpolated ssrContext.nonce directly into quoted HTML attributes. An application that derives or overrides this value with…

  • CVE-2026-106106HigOct 6, 2026
    risk 0.39cvss —epss —

    Quasar Framework is a framework for building high-performance Vue.js user interfaces. Prior to @quasar/render-ssr-error 2.2.4 and @quasar/app-vite 3.3.0, renderSSRError() in utils/render-ssr-error/src/index.js used diagnostic data from utils/render-ssr-error/src/env.js to…

  • CVE-2026-106109MedOct 6, 2026
    risk 0.20cvss —epss —

    Quasar Framework is a framework for building high-performance Vue.js user interfaces. From 1.0.0 until 3.3.0, @quasar/app-vite recursively removed the resolved build.distDir before building without rejecting the project root, user home directory, filesystem roots, or…