npm

async-critical-section @1.0.0

Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 10:37 PM UTC

Malicious

OSV ID

MAL-2026-13998

Ecosystem

npm

Summary

The package was found to contain malicious code or consuming dependency that contains malicious code

Source: amazon-inspector (933cc6900114e5aef5a4b89e0c20c0242cf368b5322cf260ae395c75cc97552f)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.