-= Per source details. Do not edit below this line.=-
The package cms-catalogue was found to contain malicious code.
The OpenSSF Package Analysis project identified 'cms-catalogue' @ 99.0.0 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"import_time": "2026-03-21T10:43:56.140798613Z",
"modified_time": "2026-03-21T10:35:35Z",
"versions": [
"99.0.0"
],
"sha256": "b1e5887ae48f20db99c60c5424798e9abab99d40af1c9f62074ea43ddbe9eb82"
},
{
"source": "ossf-package-analysis",
"import_time": "2026-03-22T23:10:11.028567254Z",
"modified_time": "2026-03-21T10:40:18Z",
"versions": [
"99.0.1"
],
"sha256": "e2b6e877ee3e0be9b6fa0c5ca347f01ce90381e62e9c5ad293879cb0173b6742"
},
{
"source": "amazon-inspector",
"import_time": "2026-03-23T05:14:20.835645225Z",
"modified_time": "2026-03-23T05:11:41Z",
"versions": [
"99.0.0",
"99.0.1"
],
"sha256": "d08a53064a76469a8b5ab4afdb3aa2907127f26f98ac8255e3ae650f8ce5d1ba"
}
]
}