-= Per source details. Do not edit below this line.=-
The package node-calculator-b0e4 was found to contain malicious code.
The OpenSSF Package Analysis project identified 'node-calculator-b0e4' @ 2.1.3 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"sha256": "a3df486d4df124c04c80090352a1b0522d55ac25c0899ac2e8c78411c1b848e1",
"import_time": "2025-11-19T03:26:40.123756927Z",
"source": "ossf-package-analysis",
"modified_time": "2025-11-19T03:25:12Z",
"versions": [
"2.1.3"
]
},
{
"sha256": "751e25d2464b2da9bfb7e629441757f1d413f8e1cf4a38522f2316ef84755e59",
"import_time": "2025-11-24T16:07:30.027979393Z",
"source": "amazon-inspector",
"modified_time": "2025-11-24T15:39:21Z",
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "SEMVER"
}
]
}
]
}