npm

gleb-js @1.2.0

Vulnerability report · Last retrieved from osv.dev July 17, 2026 at 9:03 PM UTC

Malicious

OSV ID

MAL-2026-2976

Ecosystem

npm

Summary

The package gleb-js was found to contain malicious code.

Source: amazon-inspector (1195db21d930574e3f893e03ace1f465579fc9a50f319979b05f57a0a6d8e252)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.