Promptfoo Vulnerabilities

npm AI Security

AI Threat Alert tracks 0 known vulnerabilities in Promptfoo — an AI/ML ai security in the npm ecosystem. Each CVE includes CVSS severity, EPSS exploit probability, patch status, and CISO-grade analysis.

Data sources
25
Risk Score
0
Total CVEs
0
Critical
npm
Ecosystem
N/A
Last CVE
22,657 stars 2,017 forks 361 issues 1 dependents Last push Jun 27, 2026
View on GitHub

Known Vulnerabilities (0 total, page 1 of 1)

No CVEs recorded yet for Promptfoo.

Frequently asked questions

What is Promptfoo?

Promptfoo is an AI/ML ai security tracked by AI Threat Alert for security vulnerabilities in the npm ecosystem.

How many known vulnerabilities does Promptfoo have?

Promptfoo has 0 known CVEs, tracked from NVD and GitHub Advisory.

Which ecosystem is Promptfoo distributed in?

Promptfoo is distributed via the npm ecosystem and categorized as ai security.

Where does the Promptfoo vulnerability data come from?

Vulnerability data is sourced from NVD and GitHub Advisory, enriched with CVSS, EPSS, exploit signals, and patch status for each CVE.

How do I assess the risk of Promptfoo?

Review each CVE below — every entry shows CVSS severity, EPSS exploit probability, exploitation signals, and whether a patched version is available.

Monitor Promptfoo in your stack

Get instant alerts when new vulnerabilities affect Promptfoo. CISO analysis, ATLAS technique mappings, and compliance reports included.

Start Monitoring