npm
Malicious statist-browser-typed-client-eventea.projects.tdeal @0.0.1
Vulnerability report · Last retrieved from osv.dev August 10, 2026 at 10:20 PM UTC
OSV ID
MAL-2026-13674
Ecosystem
npm
Summary
Package contains 2 files with no static or behavioral indicators of supply-chain attack shapes. No lifecycle scripts fetching remote content, no credential reads, no exfiltration endpoints, no obfuscated payloads, and no install-time or import-time destructive behavior were observed.
Source: amazon-inspector (56afa18eac7769497f21431af2a739dd5040563541223e41786746e0c44957a2)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.