npm
Malicious eslint-config-pexip-engage @1.3.0
Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 1:32 PM UTC
OSV ID
MAL-2025-192955
Ecosystem
npm
Summary
The package eslint-config-pexip-engage was found to contain malicious code.
Source: amazon-inspector (2f2ae2981daf16023f28b58d952a770dc6ec7060333721b5eeca90a6b05f6d56)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.