VYPR

npm · Malicious package advisory

Malware

jz-native-js-bridge

MAL-2025-192817

Malicious code in jz-native-js-bridge (npm)

Details


---
_-= Per source details. Do not edit below this line.=-_

## Source: amazon-inspector (8f5be9f16b75f7bf0ca5477443252a99142fcc146e923a7f77862df124ad6ac5)
The package jz-native-js-bridge was found to contain malicious code.

Compromised versions (1)

  • 114.5.14

Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.