MAL-2025-1939

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/secure-install-package/MAL-2025-1939.json
JSON Data
https://api.test.osv.dev/v1/vulns/MAL-2025-1939
Published
2025-03-03T13:39:14Z
Modified
2025-03-03T13:39:14Z
Summary
Malicious code in secure-install-package (npm)
Details

-= Per source details. Do not edit below this line.=-

Database specific
{
    "malicious-packages-origins": [
        {
            "modified_time": "2025-03-03T13:39:14Z",
            "import_time": "2025-03-03T15:07:04.747310285Z",
            "versions": [
                "1.0.0"
            ],
            "id": "RLMA-2025-01090",
            "source": "reversing-labs",
            "sha256": "51f903bf9f549be5d0ac59e7f95c143691574f2775b9330638868c3ec127dd07"
        }
    ]
}
References
Credits

Affected packages

npm / secure-install-package

Package

Name
secure-install-package
View open source insights on deps.dev
Purl
pkg:npm/secure-install-package

Affected ranges

Affected versions

1.*

1.0.0