npm
Malicious ty-web-session @3.0.1
Vulnerability report · Last retrieved from osv.dev June 23, 2026 at 3:29 AM UTC
OSV ID
MAL-2026-1997
Ecosystem
npm
Summary
The package ty-web-session was found to contain malicious code.
Source: amazon-inspector (15f6d0a640d7d4323f1ef52969a6a259b9b6e3bacc2bf65f514cd618a00945a9)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.