vega-interpreter
npmv2.2.1CSP-compliant interpreter for Vega expressions.
License BSD-3-Clausepermissive13 versions5 maintainers1 deps374,922 weekly dl
vega/vega61
/ 100
Health
update required
[email protected] has vulnerabilities — update to latest
Update to >= 5.2.1 to fix known vulnerabilities
- 1 high severity vulnerabilities
Health breakdown0 – 100
10/25
maintenance
14/20
popularity
20/25
security
12/15
maturity
5/15
community
Vulnerabilities
1
1 high
Advisories (1)
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| high | CVE-2025-59840 | Vega Cross-Site Scripting (XSS) via expressions abusing toString calls in environments using the VEGA_DEBUG global variable | 5.2.1 |
Bundle & TypeScript
📦
Bundle Size
6.0 KBminified
2.5 KB gzipped
1 direct dependencies
side effects
🌟
TypeScript
10/10typed
bundled
Health History
Dependency Tree
License Audit
Dependencies (1)
API access
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/npm/vega-interpreterFirst published · 2020-06-02T09:52:17.309Z
Last updated · 2025-09-24T19:59:28.259Z