npm
Malicious strapi-plugin-api @3.6.9
Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 3:29 AM UTC
OSV ID
MAL-2026-2451
Ecosystem
npm
Summary
The package strapi-plugin-api was found to contain malicious code.
Source: amazon-inspector (a47bef35e6c9ae0328061a33a99229b1520da7ea6ce227e4b496165054c64d55)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.