depscope
Packages
IntegrateAPI DocsCuratorBenchmarkCoverage
Sign inGet API access
depscope/bugs/npm/negotiator
This package has limited bug data (1 entry). Check back later or see the package health page for the full signal.

negotiator known bugs

npm

1 known bug in negotiator, with affected versions, fixes and workarounds. Sourced from upstream issue trackers.

View package health \u2192Breaking changes \u2192
1
bugs

Known bugs

SeverityAffectedFixed inTitleStatusSource
highany0.6.1
Regular Expression Denial of Service in negotiator
Affected versions of `negotiator` are vulnerable to regular expression denial of service attacks, which trigger upon parsing a specially crafted `Accept-Language` header value. ## Recommendation Update to version 0.6.1 or later.
fixedosv:GHSA-7mc5-chhp-fmc3

API access

Get this data programmatically \u2014 free, no authentication.

curl https://depscope.dev/api/bugs/npm/negotiator
DepScope

Package intelligence for AI agents. 19 ecosystems.

Resources
API DocumentationHallucination BenchmarkFor EnterpriseSwagger / OpenAPIPopular PackagesCoverageAI Plugin SetupWatch the pitch (60s)
Legal
Legal hubPrivacy PolicyTerms of ServiceCookie PolicyAcceptable UseAttributionDPASub-processorsSecurityImprintContact中文
© 2026 Cuttalo srl — Italy · VAT IT03242390734Built for AI agents