npm
Malicious@hover-design/react@0.2.1
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 4:45 PM UTC
OSV ID
MAL-2025-191227
Ecosystem
npm
Summary
The package @hover-design/react was found to contain malicious code.
Source: amazon-inspector (50c066ac501de3af9fd156e23b5fb0317b633da301c4cf66b12f2ae8429e0970)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.