Lucene search

K
osvGoogleOSV:MAL-2024-1540
HistoryJun 06, 2024 - 6:31 p.m.

Malicious code in node-pre-gyp-test-app2 (npm)

2024-06-0618:31:12
Google
osv.dev
malicious code
node.js
package analysis
security
communication

7.1 High

AI Score

Confidence

High


-= Per source details. Do not edit below this line.=-

Source: ossf-package-analysis (b3456b640ac819fb66bf7f58e41f74e65b868629f609e863ca1bbe300070e7a8)

The OpenSSF Package Analysis project identified β€˜node-pre-gyp-test-app2’ @ 0.1.0-release1.release2 (npm) as malicious.

It is considered malicious because:

  • The package communicates with a domain associated with malicious activity.

7.1 High

AI Score

Confidence

High