{"package":"mockjs","ecosystem":"npm","latest_version":"1.1.0","description":"生成随机数据 & 拦截 Ajax 请求","license":"","license_risk":"unknown","commercial_use_notes":"No license declared in registry metadata — verify manually before commercial use.","homepage":"http://mockjs.com/","repository":"git://github.com/nuysoft/Mock","downloads_weekly":113401,"health":{"score":52,"risk":"high","breakdown":{"maintenance":0,"popularity":14,"security":20,"maturity":15,"community":3},"deprecated":false,"max_score":100},"vulnerabilities":{"count":1,"critical":0,"high":1,"medium":0,"low":0,"details":[{"vuln_id":"CVE-2023-26158","severity":"high","summary":"mockjs vulnerable to Prototype Pollution via the Util.extend function","affected_versions":"<=1.1.0","fixed_version":null,"source":"osv","published_at":"2023-12-08T06:30:38Z","in_kev":false,"epss_prob":0.00086,"epss_percentile":0.24656,"threat_tier":"theoretical"}],"actively_exploited_count":0,"likely_exploited_count":0},"versions":{"latest":"1.1.0","total_count":10,"recent":["0.1.1","0.1.2","0.1.4","0.1.10","1.0.0-beta1","1.0.0","1.0.1-beta1","1.0.1-beta2","1.0.1-beta3","1.1.0"]},"metadata":{"deprecated":false,"deprecated_message":null,"maintainers_count":2,"first_published":"2013-09-23T11:50:43.894Z","last_published":"2019-10-25T02:24:20.627Z","dependencies_count":1,"dependencies":["commander"]},"github_stats":null,"bundle":{"size_kb":135.5,"gzip_kb":49.7,"dependency_count":1,"has_js_module":false,"has_side_effects":true,"scoped":false,"source":"bundlephobia"},"typescript":{"score":7,"has_types":true,"types_source":"definitely-typed","types_package":"@types/mockjs"},"known_issues":{"bugs_count":0,"bugs_severity":{},"status_breakdown":{},"link":null,"scope":"none"},"historical_compromise":null,"recommendation":{"action":"update_required","issues":["Moderate health score (52/100) — verify manually","1 high severity vulnerabilities"],"use_version":"1.1.0","version_hint":null,"summary":"mockjs@1.1.0 has vulnerabilities — update to latest"},"version_scoped":null,"requested_version":null,"_cache":"miss","_response_ms":596,"_powered_by":"depscope.dev — free package intelligence for AI agents","typosquat":{"is_suspected":false},"maintainer_trust":{"available":false},"malicious":{"is_malicious":false},"scorecard":{"available":false},"quality":{"available":false},"version_history_summary":{"total_versions":10,"first_release_age_days":4604,"last_release_days_ago":2381,"avg_days_between_releases":512,"release_velocity":"stale"}}