npm
Malicious statist-browser-typed-client-eventea.projects.pwafamily @35.8.0
Vulnerability report · Last retrieved from osv.dev August 10, 2026 at 10:20 PM UTC
OSV ID
MAL-2026-13670
Ecosystem
npm
Summary
Package statist-browser-typed-client-eventea.projects.pwafamily@35.8.0 shows no evidence of exfiltration, install-time remote code execution, silent-relay, credential distribution, backdoor, or self-propagation. No lifecycle scripts fetching or executing remote content and no reads of installer secrets were observed in the shipped files.
Source: amazon-inspector (38e6f280e621703ad0ddfe97298c5a5dded61dd1b8fc877729ad0202f6a23a77)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.