npm

chai-str @1.1.9

Vulnerability report · Last retrieved from osv.dev July 19, 2026 at 3:07 AM UTC

Malicious

OSV ID

MAL-2026-2898

Ecosystem

npm

Summary

The package chai-str was found to contain malicious code.

Source: amazon-inspector (22c64f68fc93318b5fb6450243b60cb7bf7820841e1df1e7d714840726d3f387)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.