depscope
Packages
IntegrateAPI DocsCuratorBenchmarkCoverage
Sign inGet API access
depscope/npm/vega-interpreter

vega-interpreter

npmv2.2.1

CSP-compliant interpreter for Vega expressions.

License BSD-3-Clausepermissive13 versions5 maintainers1 deps353,415 weekly dl
vega/vega
60
/ 100
Health
update required

[email protected] has vulnerabilities — update to latest

Update to >= 5.2.1 to fix known vulnerabilities

  • Moderate health score (60/100) — verify manually
  • 1 high severity vulnerabilities
Health breakdown0 – 100
20/25
maintenance
14/20
popularity
20/25
security
12/15
maturity
13/15
community
0/15
popularity_floor
Vulnerabilities
1
1 high
Advisories (1)
SeverityIDSummaryFixed in
highCVE-2025-59840Vega Cross-Site Scripting (XSS) via expressions abusing toString calls in environments using the VEGA_DEBUG global variable5.2.1

Bundle & TypeScript

🌟

TypeScript

10/10typed
bundled

Health History

Dependency Tree

License Audit

Dependencies (1)
vega-util
API access

Get this data programmatically — free, no authentication.

curl https://depscope.dev/api/check/npm/vega-interpreter
More from npm
?semverminimatchdebugbrace-expansionstrip-ansi
Browse all npm packages →

First published · 2020-06-02T09:52:17.309Z

Last updated · 2025-09-24T19:59:28.259Z

DepScope

Package intelligence for AI agents. 19 ecosystems.

Resources
API DocumentationHallucination BenchmarkFor EnterpriseSwagger / OpenAPIPopular PackagesCoverageAI Plugin SetupWatch the pitch (60s)
Legal
Legal hubPrivacy PolicyTerms of ServiceCookie PolicyAcceptable UseAttributionDPASub-processorsSecurityImprintContact中文
© 2026 Cuttalo srl — Italy · VAT IT03242390734Built for AI agents