-= Per source details. Do not edit below this line.=-
The package apexpro was found to contain malicious code.
The OpenSSF Package Analysis project identified 'apexpro' @ 99.99.100 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"versions": [
"99.99.99"
],
"import_time": "2026-05-02T09:54:52.37701554Z",
"modified_time": "2026-05-02T09:37:09Z",
"sha256": "34b9a67ce21b0b57925a944933f0675cdf2798cd571bd605632477c802d0ca41"
},
{
"source": "ossf-package-analysis",
"versions": [
"99.99.100"
],
"import_time": "2026-05-04T03:13:21.062694736Z",
"modified_time": "2026-05-02T09:47:27Z",
"sha256": "0a866aa1e9ad3acb9e8e9a8a1957086b718f774c9dfd49808a1e29dfbe7212ed"
},
{
"source": "amazon-inspector",
"versions": [
"99.99.99",
"99.99.100"
],
"import_time": "2026-05-12T07:28:56.861172402Z",
"modified_time": "2026-05-12T06:53:21Z",
"sha256": "80f8783908329ceda250d21f3d9d39a117f80f8ca55c400c72065449d2a0bc1c"
}
]
}