npm
Malicious @squawk/icao-registry @0.5.6
Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 4:30 AM UTC
OSV ID
MAL-2026-3446
Ecosystem
npm
Summary
The package @squawk/icao-registry was found to contain malicious code.
Source: amazon-inspector (3cdcc18fc8342a0ce7e7b2f3751bcb7d6e64c3fe660a9c5836f6d06aac4a4b45)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.