Investigate remote code execution and remote payload execution, including code fetched or launched by a package. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 8 Oct 2026, 17:33 UTC. Ordered by latest scan.
The install hook contains a concrete unconsented remote-code-execution chain, not merely a dormant capability. Its apparent runtime-bootstrap purpose does not mitigate execution of mutabl...
This is concrete remote-code and broad AI-agent control-surface behavior, not merely a package-aligned downloader. No lifecycle hook mitigates the risk because the explicit CLI path perfo...
Source establishes a concrete remote payload-execution chain and broad AI-agent control-surface mutation during ordinary CLI use. The absence of lifecycle hooks reduces install-time expos...
The package contains executable, unverified remote code replacement plus a server-controlled shell-injection primitive. These exceed the intended publishing function and create a concrete...
The lifecycle behavior is concrete and automatic, not merely dormant tooling. Although shared agent-config migration is opt-in and no exfiltration was found, unprompted remote-script exec...