MAL-2026-1875

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/wiz-prod/MAL-2026-1875.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2026-1875
Published
2026-03-18T13:15:57Z
Modified
2026-03-23T05:47:17.766089Z
Summary
Malicious code in wiz-prod (npm)
Details

-= Per source details. Do not edit below this line.=-

Source: amazon-inspector (2ab84d9745e3daaf1cd5779e4ba1d27de0c2ca0403617230b4ed2262069e38c0)

The package wiz-prod was found to contain malicious code.

Database specific
{
    "malicious-packages-origins": [
        {
            "versions": [
                "1.0.5"
            ],
            "sha256": "9d355c5ab3428996fa592e5a0a4af9888eb574005dd7559b17500bd8b9a353b9",
            "import_time": "2026-03-19T12:19:15.887776255Z",
            "modified_time": "2026-03-18T13:15:57Z",
            "id": "RLMA-2026-01649",
            "source": "reversing-labs"
        },
        {
            "sha256": "2ab84d9745e3daaf1cd5779e4ba1d27de0c2ca0403617230b4ed2262069e38c0",
            "import_time": "2026-03-23T05:14:42.987851385Z",
            "modified_time": "2026-03-23T05:11:41Z",
            "source": "amazon-inspector",
            "versions": [
                "1.0.5"
            ]
        }
    ]
}
References
Credits

Affected packages

npm / wiz-prod

Package

Affected ranges

Affected versions

1.*
1.0.5

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/wiz-prod/MAL-2026-1875.json"