npm
Malicious @cbreone/core-services @9999.9999.9999
Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 1:32 PM UTC
OSV ID
MAL-2026-1589
Ecosystem
npm
Summary
The package @cbreone/core-services was found to contain malicious code.
Source: amazon-inspector (7ae6ae37b27a798985e4dcf5adf27c7fe173717d253c4fab67acf96656bb9f8b)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.