npm
Malicious zalando-consent-api @56.2.1
Vulnerability report · Last retrieved from osv.dev August 15, 2026 at 5:37 PM UTC
OSV ID
MAL-2026-729
Ecosystem
npm
Summary
The package zalando-consent-api was found to contain malicious code.
Source: amazon-inspector (cfebb7ed5c3e35afeff037425cd019134eb927484b619019f7d11b13d6fe59c5)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.