npm
Malicious @antv/g-webgpu-engine @0.9.2
Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 3:29 AM UTC
OSV ID
MAL-2026-3970
Ecosystem
npm
Summary
The package @antv/g-webgpu-engine was found to contain malicious code.
Source: amazon-inspector (400e5a499d111b3038d6ed5d32ea759e84c0e76bdf6d8e73e03e5aef3fdd9818)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.