npm
Maliciousrollup-plugin-httpfile@0.2.1
Vulnerability report · Last retrieved from osv.dev October 9, 2026 at 11:47 AM UTC
OSV ID
MAL-2025-190858
Ecosystem
npm
Summary
The package rollup-plugin-httpfile was found to contain malicious code.
Source: amazon-inspector (2bf613b52797ec3ff23536082d58a6d97dc4c672dfeecf2dc2ce21709ff8cdf7)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.