npm · Malicious package advisory
Malwareloyalty-card
MAL-2026-1789
Malicious code in loyalty-card (npm)
Details
--- _-= Per source details. Do not edit below this line.=-_ ## Source: amazon-inspector (ae7127001e7050600c6ccf6afcc74aa672cb2fed26f21f1f25145c9027ac7f9f) The package loyalty-card was found to contain malicious code.
Compromised versions (1)
- 100.0.0
Any computer that installed or ran a compromised version should be considered fully compromised. Rotate every secret on that machine from a clean environment.