npm
Malicious@varsityvibe/utils@5.0.6
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 6:45 PM UTC
OSV ID
MAL-2025-191061
Ecosystem
npm
Summary
The package @varsityvibe/utils was found to contain malicious code.
Source: amazon-inspector (cf8ee55e5c75cf737b0ec4b83b2a56706df4518146ea131e9de4c52ad33dcd60)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.