A plugin that provides a basic reset for form styles that makes form elements easy to override with utilities.
Importing the package executes a concealed remote payload loader. It contacts blockchain RPC services to locate a command source, then evaluates and detaches the retrieved code.
Package source references dynamic require/import behavior.
tailwind.config.jsView on unpkg · L7Source contains an obfuscated payload loader that reconstructs and executes hidden code.
src/index.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/index.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
src/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release-notes.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release-channel.jsView on unpkgThis report applies to tailwindcss-form@0.5.1.
See version security history for other recorded verdicts.
Evidence last updated: .
Source advisory published: .
Package source references dynamic require/import behavior.
tailwind.config.jsView on unpkg · L7Source contains an obfuscated payload loader that reconstructs and executes hidden code.
src/index.jsView on unpkg · L1Source file is highly similar to a previously finalized malicious package; route for source-aware review.
src/index.jsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
src/index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release-notes.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/release-channel.jsView on unpkg