npm
Malicious async-critical-section @1.0.0
Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 10:37 PM UTC
OSV ID
MAL-2026-13998
Ecosystem
npm
Summary
The package was found to contain malicious code or consuming dependency that contains malicious code
Source: amazon-inspector (933cc6900114e5aef5a4b89e0c20c0242cf368b5322cf260ae395c75cc97552f)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.