pypi
Malicious spellcheckers @1.5.0
Vulnerability report · Last retrieved from osv.dev August 14, 2026 at 8:32 AM UTC
OSV ID
MAL-2025-191533
Ecosystem
pypi
Summary
This package is malicious and typosquating the legitimate pyspellchecker library. This package will deploy a remote-access trojan that allows the attacker full control of the victim's host.
Source: google-open-source-security (c83520810b148ec74e509b16851a1fafa1bec576b502a5debabd9b52520d9754)
Protect your entire dependency tree
Scan your lock files automatically on every PR. Block malicious packages before they reach production.