Loading npm security reports…
SECURITY: compromised supply-chain build (2026-06-04 worm) — do not use; upgrade to a known-good release.
Create, deploy, and tear down full Cloudflare Workers environments per stage
OpenSSF/OSV advisory MAL-2026-5267 confirms this npm version as malicious. The Miasma malware is a self-propagating worm that spreads across the npm registry by abusing weaponized `binding.gyp` files to achieve execution during package installation, bypassing security tools that only inspect package lifecycle scripts...