npm · Malicious package advisory
Malwareabstract-http-request
MAL-2026-1646
Malicious code in abstract-http-request (npm)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (84130e04f5582700fd6841f67e465fb571518a710f3257fae0990653bf08aa92) The package abstract-http-request was found to contain malicious code.
Compromised versions (3)
- 2.3.1
- 99.99.1
- 99.99.2
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.