npm

statist-browser-typed-client-eventea.projects.pwafamily @35.8.0

Vulnerability report · Last retrieved from osv.dev August 10, 2026 at 10:20 PM UTC

Malicious

OSV ID

MAL-2026-13670

Ecosystem

npm

Summary

Package statist-browser-typed-client-eventea.projects.pwafamily@35.8.0 shows no evidence of exfiltration, install-time remote code execution, silent-relay, credential distribution, backdoor, or self-propagation. No lifecycle scripts fetching or executing remote content and no reads of installer secrets were observed in the shipped files.

Source: amazon-inspector (38e6f280e621703ad0ddfe97298c5a5dded61dd1b8fc877729ad0202f6a23a77)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.