Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 0.1% on npmjs.org
Top 0.1% downloads on npmjs.org
Top 0.1% dependent packages on npmjs.org
Top 0.1% dependent repos on npmjs.org
Top 0.1% docker downloads on npmjs.org

npmjs.org : yarn

📦🐈 Fast, reliable, and secure dependency management.

Registry - Source - JSON
purl: pkg:npm/yarn
Keywords: javascript, npm, package-manager, yarn
License: BSD-2-Clause
Latest release: over 2 years ago
First release: about 12 years ago
Dependent packages: 3,296
Dependent repositories: 71,861
Downloads: 23,248,976 last month
Stars: 41,295 on GitHub
Forks: 2,710 on GitHub
Docker dependents: 47,503
Docker downloads: 9,808,153,863
Total Commits: 2252
Committers: 543
Average commits per author: 4.147
Development Distribution Score (DDS): 0.849
More commit stats: commits.ecosyste.ms
See more repository details: repos.ecosyste.ms
Funding links: https://github.com/sponsors/yarnpkg
Last synced: 1 day ago

High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLThtZmMtdjd3di1wNjJn
Path Traversal in Yarn
Ecosystems: npm
Packages: yarn
Source: github
Published: about 2 years ago
High
GSA_kwCzR0hTQS1tcHdqLWZjcjYteDM0Y84AA5DS
Yarn untrusted search path vulnerability
Ecosystems: npm
Packages: yarn
Source: github
Published: 3 months ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhqeGMtNDYyeC14Nzdq
TOCTOU Race Condition in Yarn
Ecosystems: npm
Packages: yarn
Source: github
Published: about 2 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTV4ZjQtZjJmcS1mNjlq
Yarn Improper link resolution before file access (Link Following)
Ecosystems: npm
Packages: yarn
Source: github
Published: about 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXdxZmMtY3I1OS1oNjRw
Missing Encryption of Sensitive Data in yarn
Ecosystems: npm
Packages: yarn
Source: github
Published: almost 5 years ago