npm
Malicious mnmobicom @1.0.0
Vulnerability report · Last retrieved from osv.dev August 13, 2026 at 4:27 AM UTC
OSV ID
MAL-2026-13823
Ecosystem
npm
Summary
Package mnmobicom@1.0.0 was scanned with 2 files and no static or behavioral findings were produced. No lifecycle scripts, no network exfiltration, no credential access, no dropper, no obfuscated payload, and no silent-relay behavior were observed in the analyzed contents. The package appears empty or trivial with no code paths that would harm an installer.
Source: amazon-inspector (551bd821f3078161e164c495a903b00133be4ef630a3c70e6472a8235df93a3b)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.