npm
Malicious sui-gql-client @0.2.0
Vulnerability report · Last retrieved from osv.dev August 13, 2026 at 4:27 AM UTC
OSV ID
MAL-2026-13768
Ecosystem
npm
Summary
Analysis of the package did not surface install-time lifecycle scripts, credential access, network exfiltration, dropper behavior, silent-relay, or other patterns associated with supply-chain attacks. No attacker-controlled destinations, obfuscated payloads, or privileged install-time actions were identified in the scanned files.
Source: amazon-inspector (763079354e471aa241953530a79a946e060402895da52ca47628f1817c452d7e)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.