npm

yunxohang7 @9.9.9

Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 10:32 AM UTC

Malicious

OSV ID

MAL-2026-187

Ecosystem

npm

Summary

The package yunxohang7 was found to contain malicious code.

Source: amazon-inspector (67a769d99a6a661851b61de53efc010814ffb939cd296c6f923849dc61f89b3f)

Protect your entire dependency tree

Scan your lock files automatically on every PR. Block malicious packages before they reach production.