npm
Malicious imo-allowlist-xss-poc @1.0.0
Vulnerability report · Last retrieved from osv.dev August 31, 2026 at 11:43 PM UTC
OSV ID
MAL-2026-14559
Ecosystem
npm
Summary
The package was found to contain malicious code or consuming dependency that contains malicious code
Source: amazon-inspector (76f429a987c3b4800204131b27faae0c29e55a0761a1fa2a0306ab14a343afd7)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.