Loading npm security reports…
This document describes the management of vulnerabilities for the project and all modules within the organization.
Importing the package immediately evaluates an unrelated obfuscated payload. The payload includes process execution, detached background execution, Axios networking, and AWS-path targeting.
Source downloads or fetches remote code and executes it.
lib/config.jsView on unpkg · L1A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
lib/config.jsView on unpkg · L1Source downloads or fetches remote code and executes it.
lib/config.jsView on unpkg · L1A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
lib/config.jsView on unpkg · L1