npm

expirs @1.0.0

Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 3:29 AM UTC

Malicious

OSV ID

MAL-2026-2441

Ecosystem

npm

Summary

The package expirs was found to contain malicious code.

Source: amazon-inspector (86105842d926ee95e61ae8adf0d4506cbc55c9510189208ee33d511806f2c5ef)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.