Spectra Assure
Community
failIncident: Malware
Scanned: 15 days ago

ng2-file-upload

Angular file uploader
License: Permissive (MIT)
Published: 4 months ago



SAFE Assessment

Compliance

Licenses
No license compliance issues
Secrets
No sensitive information found

Security

Vulnerabilities
1 high severity vulnerabilities
Hardening
No application hardening issues

Threats

Tampering
1 suspicious application behaviors
Malware
4 supply chain attack artifacts

INCIDENTS FOR THIS VERSION:

malware
4 months agoReported By: Community (Socket)
malware
4 months agoReported By: Community (StepSecurity)
malware
4 months agoReported By: Community (Semgrep)
malware
4 months agoReported By: Community (GitHub Advisory)
malware
4 months agoReported By: Community (patlkli)
malware
4 months agoReported By: Community (Aikido)
malware
4 months agoReported By: Community (OpenSSF)
malware
4 months agoReported By: ReversingLabs (Researcher)
See more info on our blog
malware
4 months agoReported By: Community (Wiz)
malware
4 months agoReported By: Community (Checkmarx)
malware
4 months agoReported By: Community (Sonatype)
removal
N/AReported By: Community
List of known vulnerabilities affecting the software package and the components it embeds. Last refreshed on: 2025/12/24
All detected vulnerabilities are fixable
Run the update/upgrade command in your package manager to resolve the detected vulnerabilities
CVSS Score
CVE
Name
Tags
high
7.7
CVE-2025-66035
Fix Available