npm

aes-core-valid-ipherv @1.0.0

Vulnerability report · Last retrieved from osv.dev July 13, 2026 at 5:39 AM UTC

Malicious

OSV ID

MAL-2025-149905

Ecosystem

npm

Summary

The package aes-core-valid-ipherv was found to contain malicious code.

Source: amazon-inspector (c4b3e5a270d63d751fe142a9d81d59870ee3c9bbe18403a4da5fbff3c5cce2b8)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.