npm
Malicious svelte-kit-cache @1.0.0
Vulnerability report · Last retrieved from osv.dev August 10, 2026 at 10:20 PM UTC
OSV ID
MAL-2026-13677
Ecosystem
npm
Summary
No static or behavioral indicators of supply-chain attack were observed in this package version. No lifecycle scripts fetching or executing remote content, no credential or environment scraping, no hardcoded exfiltration endpoints, and no obfuscated payloads were identified across the scanned files.
Source: amazon-inspector (4ea03ff1abc711e776243e207270c0f7d208521386cc87d94fbb8d64300beb9d)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.