npm vulnerability intelligence

ip-address NPM Package
Vulnerability Check

A library for parsing IPv4 and IPv6 IP addresses in node and the browser.

Moderate MIT v10.2.0
Vulnerability Analysis OSV Live

ip-address

v10.2.0 · MIT · 101,132,622 dl/wk

Advisory Breakdown

Critical 0
High 0
Moderate 1
Low 0

Severity Rating

Moderate

1 advisory

Moderate

Weekly downloads

101,132,622

Total advisories

1

Latest version

10.2.0

License

MIT

Known advisories

OSV records for the npm ecosystem

1
GHSA-v2v4-37r5-5v8g CVE-2026-42338 moderate

ip-address has XSS in Address6 HTML-emitting methods

Affected: >=0 <10.1.1 Fixed in: 10.1.1 Updated May 13, 2026
View source

Checked Jun 25, 2026, 5:55 AM from npm and OSV.dev

Package metadata

From the npm registry

Package name
ip-address
Ecosystem
npm
Latest version
10.2.0
License
MIT
Weekly downloads
101,132,622

Remediation boundary

What RequestGuard does — and doesn't — cover

RequestGuard does not fix npm package vulnerabilities. Dependency remediation happens through package updates, patches, lockfile changes, and maintainer guidance. RequestGuard can help mitigate runtime abuse around exposed web and API flows while remediation is handled separately.

Signup flows
Login attempts
API traffic

Data from npm registry and OSV.dev · Checked 6/25/2026, 5:55:56 AM