npm
Malicious@sangith/newrelic@1.2.3
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 4:45 PM UTC
OSV ID
MAL-2025-6832
Ecosystem
npm
Summary
The OpenSSF Package Analysis project identified '@sangith/newrelic' @ 1.2.3 (npm) as malicious. It is considered malicious because: - The package executes one or more commands associated with malicious behavior.
Source: ossf-package-analysis (df1e3a9bd21e4d7ca6ae9595850002d67806ca9fd408d068bad6ce3a8a4c2dbf)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.