Investigate remote code execution and remote payload execution, including code fetched or launched by a package. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 8 Oct 2026, 08:08 UTC. Ordered by latest scan.
The main entrypoint exposes an explicit command that downloads and executes remote code, establishing a concrete remote code execution capability. The package has no install lifecycle hoo...
The `project worktime` command directly pipes a downloaded script into bash, and the command is exported for CLI use. This concrete remote code execution behavior supports blocking the pa...
Inspected source contains concrete exfiltration and remote code execution unrelated to CSS polyfill functionality. The registry manifest provides a loading path to this active payload.
Inspected source proves automatic host-data transmission and execution of remote server commands during installation. This is concrete malicious install behavior warranting a publication...