Package compatibility
tRPC Server
Node.js requirements from npm Registry (engines.node) for the @trpc/server package. This is not a lifecycle software page.
Compatibility is derived from the declared Node.js version requirement (npm engines.node). CompatHub does not independently test every combination.
Version lines
Each line reflects a declared engines.node tip. Requirement changes across tips appear as separate lines when present.
Known vulnerabilities
Recent OSV.dev advisories mapped to this product. CVSS/CWE from NVD and known-exploited status from CISA KEV when available. CompatHub is not the original vulnerability authority.
- CVE-2025-68130GHSA-43p4-m455-4f4j
tRPC has possible prototype pollution in `experimental_nextAppDirCaller`
- Affected:
- >=10.27.0,<10.45.3; >=11.0.0,<11.8.0
- Fixed in:
- 10.45.3, 11.8.0
- Source:
- OSV source · Advisory
- CVE-2025-43855GHSA-pj3v-9cm8-gvj8
tRPC 11 WebSocket DoS Vulnerability
- Affected:
- >=11.0.0,<11.1.1
- Fixed in:
- 11.1.1
- Source:
- OSV source · Advisory
