npm
Maliciousdocusaurus-plugin-vanilla-extract@1.0.3
Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 11:44 AM UTC
OSV ID
MAL-2025-190956
Ecosystem
npm
Summary
The package docusaurus-plugin-vanilla-extract was found to contain malicious code.
Source: amazon-inspector (2659e389b89fcdf1fe723b544962764d4f2881cae9694dc4107fbbb4ec077328)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.