Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-004488
sonatype-2025-004488
NPM Security Holding Packages - Mon Nov 10 2025
Published Nov 10, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-49453.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-50732.json
CVSS Score
Critical
10.0
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
cursor-bypass
0.0.1-security
npm
cursor-bypass
1.0.1
npm
cursor-bypass
1.0.2
npm
dandh811
0.0.1-security
npm
dandh811
1.0.0
npm
karemv1
0.0.1-security
npm
karemv1
1.0.0
npm
karemv1
1.0.11
npm
karemv1
1.0.12
npm
karemv1
1.0.2
npm
karemv1
1.0.3
npm
karemv1
1.0.4
npm
karemv1
1.0.5
npm
karemv1
1.0.7
npm
karemv1
1.0.8
npm
karemv1
1.0.9
npm
phantom-fixer
0.0.1-security
npm
phantom-fixer
1.2.3
npm
synqroomkit
0.0.1-security
npm
synqroomkit
0.1.0
npm
synqroomkit
0.1.2
npm
synqroomkit
0.2.0
npm
synqroomkit
0.3.0
npm
synqroomkit
0.4.0
npm
synqroomkit
0.5.0
npm
synqroomkit
0.6.0
npm
telegram-travis-api
0.0.1-security
npm
telegram-travis-api
1.0.1
npm
zcash-easy-miner
0.0.1-security
npm
zcash-easy-miner
1.0.0
npm
zcash-easy-miner
1.0.1
1-31 of 31
sonatype-2025-004488 | Components Impacted | Sonatype Guide | Sonatype Guide