npm
Malicious internal-secret-project-1234 @99.99.99
Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 3:29 AM UTC
OSV ID
MAL-2026-1753
Ecosystem
npm
Summary
The package internal-secret-project-1234 was found to contain malicious code.
Source: amazon-inspector (c8dc95d958f766e3d4594c0ea651f834cd877966e5c76347c4f0d819eb5e79d7)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.