Immutable-js
Security Risk Profile
49
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 3 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 4, 2026 to present
3
Total CVEs
3
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
8.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
49/100
medium
Severity Distribution
Critical
0High
3Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
Integer Overflow
1
Most Affected Products
1. Immutable-js Immutable Node.js7
2. npm/immutable7
3. Immutable.js Immutable.Map2
4. Immutable.js Immutable.Set2
5. npm/immutable-js1
Recent Vulnerabilities
See more →CVE-2026-59879
CVSS 8.7high
Immutable.js `List` 32-bit trie overflow → unrecoverable DoS
7/8/2026
CVE-2026-59880
CVSS 8.7high
Immutable.js: Hash-collision algorithmic complexity denial of service in Immutable.Map/Set
7/8/2026
CVE-2026-29063
CVSS 8.7EPSS 0%high
Immutable.js: Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in immutable
3/4/2026
Monitor Immutable-js in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.