Logo
npm

pico-uid@1.0.4

Vulnerability report · Last retrieved from osv.dev October 8, 2026 at 5:45 PM UTC

Malicious

OSV ID

MAL-2025-190986

Ecosystem

npm

Summary

The package pico-uid was found to contain malicious code.

Source: amazon-inspector (ea7b37b73a502fca8e0834485805f85161a0b6324f046227c52eaf62f81cbe61)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.