npm
Malicious@lessondesk/schoolbus@5.2.3
Vulnerability report · Last retrieved from osv.dev October 9, 2026 at 6:50 PM UTC
OSV ID
MAL-2025-191032
Ecosystem
npm
Summary
The package @lessondesk/schoolbus was found to contain malicious code.
Source: amazon-inspector (8c14a4cce7a095ba23b1ec9898ad654afc8e736c94cf26a1b8c15aa123973fe9)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.