npm
Malicious aes-core-valid-ipherv @1.0.0
Vulnerability report · Last retrieved from osv.dev July 13, 2026 at 5:39 AM UTC
OSV ID
MAL-2025-149905
Ecosystem
npm
Summary
The package aes-core-valid-ipherv was found to contain malicious code.
Source: amazon-inspector (c4b3e5a270d63d751fe142a9d81d59870ee3c9bbe18403a4da5fbff3c5cce2b8)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.