https://github.com/medusajs/medusa.git
· scanned 2026-05-17 19:53 UTC (2 weeks, 4 days ago)
· 10 languages
3637 findings (59 legacy + 3578 scanner) 8/10 scanners ran 29th percentile · Typescript · huge (>500K LoC) Scanner says 55 (higher by 24)
Last scanned 2 weeks, 4 days ago · v2 · 59 findings from 1 source. Findings combine the legacy security pipeline AND the multi-layer engine (atlas, wiring, flows, ranked) AND verified AI agent contributions.
Showing 48 of 59 findings. Click TP / FP to vote on a finding's accuracy — votes adjust the confidence weighting and improve detection across the platform.
packages/cli/create-medusa-app/src/utils/project-creator/medusa-project-creator.ts:194
authlegacy
www/apps/api-reference/app/tag/route.ts:4
authlegacy
www/apps/api-reference/app/download/[area]/route.ts:11
authlegacy
www/apps/resources/app/api/references/[...slug]/route.ts:20
authlegacy
www/apps/api-reference/app/schema/route.ts:5
authlegacy
packages/cli/medusa-cli/scripts/postinstall.js:16
error_handlinglegacy
packages/cli/oas/medusa-oas-cli/src/utils/yaml-utils.ts:6
deserializationlegacy
packages/core/js-sdk/src/client.ts:370
authlegacy
packages/core/js-sdk/src/client.ts:366
authlegacy
www/packages/remark-rehype-plugins/src/change-links-md.ts:14
qualitylegacy
www/packages/remark-rehype-plugins/src/change-links-md.ts:13
qualitylegacy
www/packages/docs-ui/src/constants.tsx:326
qualitylegacy
www/packages/docs-ui/src/constants.tsx:320
qualitylegacy
packages/core/utils/src/dal/mikro-orm/mikro-orm-serializer-old.ts:1
qualitylegacy
index.html
qualitylegacy
.well-known/security.txt
qualitylegacy
packages/core/utils/src/dal/mikro-orm/mikro-orm-serializer-old.ts:1
qualitylegacy
packages/admin/dashboard/src/hooks/api/exchanges.tsx:165
qualitylegacy
packages/admin/dashboard/src/hooks/api/collections.tsx:3
qualitylegacy
packages/admin/dashboard/src/components/table/view-selector/view-selector.tsx:51
qualitylegacy
packages/admin/dashboard/src/components/table/table-cells/sales-channel/name-cell/name-cell.tsx:10
qualitylegacy
packages/admin/dashboard/src/components/table/table-cells/common/status-cell/status-cell.tsx:7
qualitylegacy
packages/admin/dashboard/src/components/table/table-cells/common/date-cell/date-cell.tsx:9
qualitylegacy
packages/admin/dashboard/src/components/table/data-table/data-table-search/data-table-search.tsx:24
qualitylegacy
packages/admin/dashboard/src/components/table/data-table/data-table-order-by/data-table-order-by.tsx:26
qualitylegacy
packages/admin/dashboard/src/components/table/data-table/data-table-filter/string-filter.tsx:66
qualitylegacy
packages/admin/dashboard/src/components/table/data-table/data-table-filter/number-filter.tsx:133
qualitylegacy
packages/admin/dashboard/src/components/layout/user-menu/user-menu.tsx:220
qualitylegacy
packages/admin/dashboard/src/components/layout/user-menu/user-menu.tsx:180
qualitylegacy
packages/admin/dashboard/src/components/layout/settings-layout/settings-layout.tsx:231
qualitylegacy
packages/admin/dashboard/src/components/layout/pages/two-column-page/two-column-page.tsx:24
qualitylegacy
packages/admin/dashboard/src/components/data-grid/components/data-grid-toggleable-number-cell.tsx:19
qualitylegacy
packages/admin/dashboard/src/components/data-grid/components/data-grid-text-cell.tsx:11
qualitylegacy
packages/admin/dashboard/src/components/data-grid/components/data-grid-text-cell.tsx:9
qualitylegacy
packages/admin/dashboard/src/components/data-grid/components/data-grid-number-cell.tsx:16
qualitylegacy
packages/admin/dashboard/src/components/common/logo-box/logo-box.tsx:37
qualitylegacy
packages/admin/admin-vite-plugin/src/routes/generate-routes.ts:61
qualitylegacy
packages/admin/admin-vite-plugin/src/custom-fields/generate-custom-field-links.ts:27
qualitylegacy
packages/admin/admin-vite-plugin/src/custom-fields/generate-custom-field-links.ts:26
qualitylegacy
packages/admin/admin-vite-plugin/src/custom-fields/generate-custom-field-forms.ts:67
qualitylegacy
llms.txt
qualitylegacy
humans.txt
qualitylegacy
robots.txt
qualitylegacy
sitemap.xml
qualitylegacy
packages/modules/order/src/utils/actions/item-update.ts:1
qualitylegacy
packages/core/utils/src/common/deep-copy.ts:1
qualitylegacy
packages/core/core-flows/src/customer/steps/utils/unset-address-for-update.ts:1
qualitylegacy
This page is publicly accessible at:
https://repobility.com/scan/5f88f9b1-bad0-4cff-861c-da0f06324fff/
To check status programmatically (no auth required):
curl -s https://repobility.com/api/v1/public/scan/5f88f9b1-bad0-4cff-861c-da0f06324fff/
Important — please don't re-submit the same URL repeatedly. The submission endpoint is idempotent: re-submitting the same git URL returns this same scan_token, not a new one. To re-scan this repo, sign up free and use the dashboard.