-= Per source details. Do not edit below this line.=-
The package path-internal-util was found to contain malicious code.
The OpenSSF Package Analysis project identified 'path-internal-util' @ 1.0.1 (npm) as malicious.
It is considered malicious because:
The package communicates with a domain associated with malicious activity.
The package executes one or more commands associated with malicious behavior.
{
"malicious-packages-origins": [
{
"source": "ossf-package-analysis",
"versions": [
"1.0.1"
],
"import_time": "2026-05-04T03:13:19.864701864Z",
"modified_time": "2026-05-01T07:11:51Z",
"sha256": "db91c8a40ff204e2aa98c594413d69b624d93a4ac51ea09fc00b1d3f63b8e462"
},
{
"source": "amazon-inspector",
"versions": [
"1.0.1"
],
"import_time": "2026-05-12T07:28:56.745822945Z",
"modified_time": "2026-05-12T06:53:21Z",
"sha256": "3bd4ebaf2978cb19cb80932842460fcb683c7e5867ec9e51c642bc29605394d4"
}
]
}