VYPR

npm · Malicious package advisory

Malware

libxmljs2var-ctf

MAL-2026-1783

Malicious code in libxmljs2var-ctf (npm)

Details


---
_-= Per source details. Do not edit below this line.=-_

## Source: amazon-inspector (01c9273d9a31b1c550935b2367e8a3ba1bedb4668f432fec423a01bdc314ea0e)
The package libxmljs2var-ctf was found to contain malicious code.

Compromised versions (1)

  • 0.30.3

Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.