-= Per source details. Do not edit below this line.=-
The package eslint-plugin-fuel-react was found to contain malicious code.
The OpenSSF Package Analysis project identified 'eslint-plugin-fuel-react' @ 1.0.1 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"modified_time": "2026-01-17T21:37:23Z",
"import_time": "2026-01-17T22:06:46.289313794Z",
"sha256": "7d529d0ab1e104b0efc7fe5f691e984d58e2f5b08fc910ed462ba8be72b852e9",
"versions": [
"1.0.1"
],
"source": "ossf-package-analysis"
},
{
"modified_time": "2026-01-23T01:13:12Z",
"import_time": "2026-01-23T01:36:50.459781683Z",
"ranges": [
{
"events": [
{
"introduced": "0"
}
],
"type": "SEMVER"
}
],
"sha256": "99675eb06a245907c7a2133cf7d75af3037229a059d0a135bf8c3d518432a6a4",
"source": "amazon-inspector"
}
]
}