MAL-2025-735

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/herostereo/MAL-2025-735.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2025-735
Published
2025-01-31T03:01:05Z
Modified
2025-01-31T03:01:05Z
Summary
Malicious code in herostereo (npm)
Details

The package communicates with a domain associated with malicious activity.

Database specific
{
    "malicious-packages-origins": null
}
References
Credits

Affected packages

npm / herostereo

Package

Affected ranges

Affected versions

1.*

1.0.1
1.0.2
1.0.3