Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-007438
sonatype-2025-007438
Malicious Packages - Fri Dec 05 2025 [Info Stealer]
Published Dec 5, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-191986.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-191994.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-191998.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192012.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192019.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192028.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192035.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192052.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192082.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192111.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192117.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192118.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192126.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192128.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192136.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192153.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192160.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192173.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192181.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192187.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192192.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192193.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192208.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192765.json
CVSS Score
Medium
5.3
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
elf-stats-bright-star-712
1.0.0
npm
elf-stats-bright-star-712
1.0.1
npm
elf-stats-bright-star-712
1.0.2
npm
elf-stats-candystriped-cookiejar-799
1.9.9
npm
elf-stats-candystriped-lantern-205
1.0.1
npm
elf-stats-cosy-pantry-344
1.0.0
npm
elf-stats-cranberry-hollyberry-804
1.0.0
npm
elf-stats-ember-workbench-742
1.0.2
npm
elf-stats-evergreen-bow-653
9.9.10
npm
elf-stats-evergreen-bow-653
9.9.9
npm
elf-stats-festive-cocoa-106
2.0.0
npm
elf-stats-festive-cocoa-106
3.0.0
npm
elf-stats-flickering-saddlebag-301
1.0.0
npm
elf-stats-ginger-icicle-707
0.0.1-security
npm
elf-stats-ginger-icicle-707
99.19.12
npm
elf-stats-jolly-snowglobe-266
200.0.0
npm
elf-stats-jolly-snowglobe-266
99.9.0
npm
elf-stats-jolly-snowglobe-266
99.9.82
npm
elf-stats-jolly-snowglobe-266
99.9.88
npm
elf-stats-jolly-snowglobe-266
99.9.8
npm
elf-stats-marzipan-fir-795
1.0.1
npm
elf-stats-mulled-bauble-252
1.0.3
npm
elf-stats-mulled-bauble-252
1.0.4
npm
elf-stats-mulled-bauble-252
1.0.8
npm
elf-stats-mulled-bauble-252
1.0.9
npm
elf-stats-mulled-bauble-252
1.1.9
npm
elf-stats-mulled-bauble-252
1.2.9
npm
elf-stats-mulled-bauble-252
1.9.9
npm
elf-stats-nutmeg-stocking-515
1.0.0
npm
elf-stats-piney-icicle-501
0.0.1-security
npm
elf-stats-piney-icicle-501
1.0.1
npm
elf-stats-piney-icicle-501
1.0.2
npm
elf-stats-piney-icicle-501
1.0.3
npm
elf-stats-piney-icicle-501
1.0.4
npm
elf-stats-piney-icicle-501
1.0.5
npm
elf-stats-piney-icicle-501
1.0.6
npm
elf-stats-piney-icicle-501
1.0.7
npm
elf-stats-piney-icicle-501
1.0.8
npm
elf-stats-piney-icicle-501
1.0.9
npm
elf-stats-piney-icicle-501
1.1.0
npm
elf-stats-piney-icicle-501
99.9.12
npm
elf-stats-piney-ledger-864
1.0.0
npm
elf-stats-shimmering-icicle-212
1.0.0
npm
elf-stats-shimmering-icicle-213
1.0.0
npm
elf-stats-shimmering-icicle-214
1.0.0
npm
elf-stats-shimmering-nightcap-245
99.9.25
npm
elf-stats-shimmering-nightcap-245
99.9.30
npm
elf-stats-shimmering-nightcap-245
99.9.57
npm
elf-stats-shimmering-nightcap-245
99.9.67
npm
elf-stats-shimmering-nightcap-245
99.9.9
1-50 of 76
sonatype-2025-007438 | Components Impacted | Sonatype Guide | Sonatype Guide