-= Per source details. Do not edit below this line.=-
The OpenSSF Package Analysis project identified 'wp-delivery-hero-core-v2' @ 2.2.1 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{ "malicious-packages-origins": [ { "import_time": "2024-06-28T02:46:40.286464111Z", "id": "RLMA-2024-02738", "modified_time": "2024-06-25T13:22:11Z", "versions": [ "2.2.0" ], "source": "reversing-labs", "sha256": "d315b44f3835529fb3fe7ef9c37f0e47dbef65181fdf03445be6a38437154510" }, { "import_time": "2024-07-08T23:05:16.561240952Z", "source": "ossf-package-analysis", "modified_time": "2024-07-08T22:37:04Z", "versions": [ "2.2.1" ], "sha256": "626c10f0486b04cda2d813bc50241e0676d4ab679f376a6922b10d61c961dfcb" }, { "import_time": "2024-10-24T00:58:33.461950458Z", "id": "RLUA-2024-07587", "modified_time": "2024-10-16T13:45:57Z", "source": "reversing-labs", "sha256": "b592497aae5256b2d49aa27d6cc7e4133466945b856628a4aeccc05b88c76364" } ] }