npm
Malicious@coveops/abi@2.0.1
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 7:45 PM UTC
OSV ID
MAL-2025-47025
Ecosystem
npm
Summary
This package was compromised and malicious code added as part of a phishing campaign.
Source: google-open-source-security (75499720f09aaa0ee53321facfb199f2c3234acabc101127ae22bbd4fa90bb1d)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.