-= Per source details. Do not edit below this line.=-
The package node-syncora was found to contain malicious code.
{
"malicious-packages-origins": [
{
"id": "RLMA-2026-02004",
"modified_time": "2026-04-16T10:07:54Z",
"import_time": "2026-04-16T15:39:11.048164483Z",
"source": "reversing-labs",
"sha256": "b96853ab6ceb4432c4e5950c9f4500270c0855af4c861275d0bebb8eb8cc41b5",
"versions": [
"2.4.5"
]
},
{
"modified_time": "2026-04-23T20:43:56Z",
"import_time": "2026-04-23T20:49:05.027011863Z",
"source": "amazon-inspector",
"sha256": "3b9b36edd7fd683545fa4d254469ab5bd0697265cf63352489d2f0f7cd8583a0",
"versions": [
"2.4.5"
]
}
]
}