MAL-2026-1877

See a problem?
Import Source
https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/wiz-redirects/MAL-2026-1877.json
JSON Data
https://api.osv.dev/v1/vulns/MAL-2026-1877
Published
2026-03-18T13:16:05Z
Modified
2026-03-23T05:38:26.336838Z
Summary
Malicious code in wiz-redirects (npm)
Details

-= Per source details. Do not edit below this line.=-

Source: amazon-inspector (e4e5f8353324161f110374c793ad9863bcc2634aebf62229b8bb88d7398f3115)

The package wiz-redirects was found to contain malicious code.

Database specific
{
    "malicious-packages-origins": [
        {
            "id": "RLMA-2026-01651",
            "sha256": "93779352516359d41ac1e4091b46d784391d1052e06b8926fe1a4b7c377d2c22",
            "import_time": "2026-03-19T12:19:16.065282481Z",
            "source": "reversing-labs",
            "modified_time": "2026-03-18T13:16:05Z",
            "versions": [
                "99.999.99"
            ]
        },
        {
            "import_time": "2026-03-23T05:14:29.971198667Z",
            "sha256": "e4e5f8353324161f110374c793ad9863bcc2634aebf62229b8bb88d7398f3115",
            "source": "amazon-inspector",
            "modified_time": "2026-03-23T05:11:41Z",
            "versions": [
                "99.999.99"
            ]
        }
    ]
}
References
Credits

Affected packages

npm / wiz-redirects

Package

Affected ranges

Affected versions

99.*
99.999.99

Database specific

source
"https://github.com/ossf/malicious-packages/blob/main/osv/malicious/npm/wiz-redirects/MAL-2026-1877.json"