Investigate remote code execution and remote payload execution, including code fetched or launched by a package. These reports include LPM Firewall detections. Each report identifies the package version, supporting evidence, advisory sources, and current Firewall decision.
Updated 9 Oct 2026, 17:33 UTC. Ordered by latest scan.
This is a concrete remote-payload execution chain activated by importing the package, unrelated to the stated React-component purpose. No lifecycle hook is needed for the package to execu...
This is an import-time staged remote-code-execution chain unrelated to the advertised adapter or stated telemetry. No signature, hash, or user action protects the downloaded executable.
This is a concrete import-time remote-code-execution chain, not legitimate telemetry. Its obfuscated endpoints, DNS fallback, detached execution, and cleanup indicate malicious intent.
This is an import-time remote payload loader, not ESLint configuration behavior. Its stealthy download, temporary staging, and detached execution constitute concrete malicious RCE.