npm

internal-secret-project-1234 @99.99.99

Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 3:29 AM UTC

Malicious

OSV ID

MAL-2026-1753

Ecosystem

npm

Summary

The package internal-secret-project-1234 was found to contain malicious code.

Source: amazon-inspector (c8dc95d958f766e3d4594c0ea651f834cd877966e5c76347c4f0d819eb5e79d7)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.