Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-007443
sonatype-2025-007443
Malicious Packages - Fri Dec 05 2025 [Info Stealer]
Published Dec 5, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/PyPI/MAL-2025-192306.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-191971.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192245.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192253.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192254.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192259.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192345.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192346.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192352.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192353.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192354.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192355.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192356.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192357.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192358.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192359.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192360.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192591.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192596.json
CVSS Score
Medium
5.3
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
@testfei/hallo-word
0.0.1-security
npm
@testfei/hallo-word
1.0.0
npm
@testfei/hallo-word
1.0.1
npm
@testfei/hallo-word
1.0.3
npm
@testfei/hallo-word
1.0.4
npm
@testfei/hallo-word
1.0.5
npm
@testfei/hallo-word
1.0.6
npm
@testfei/hallo-word
1.0.7
npm
abstract-http-request
2.3.1
npm
abstract-http-request
99.99.1
pypi
dell-restore-system
99.99.99
npm
dubbo-js-private-workspace
999.0.104
npm
enclose-eslint
99.99.1
npm
enclose-eslint
99.99.2
npm
example-vue2-micro
999.0.104
npm
fdir1
99.99.1
npm
fdir1
99.99.2
npm
fdir2
99.99.1
npm
fdir2
99.99.2
npm
fdir3
99.99.1
npm
fdir4
99.99.1
npm
fdir4
99.99.2
npm
fdir5
99.99.1
npm
fdir5
99.99.2
npm
hydra-consent-sdk
99.99.1
npm
hydra-node-consent-sdk
99.99.1
npm
hydra-node-consent-sdk
99.99.2
npm
i18never
0.0.1-security
npm
i18never
999.0.101
npm
ido-sdk-web
99.99.1
npm
ido-sdk-web
99.99.2
npm
nad-home
999.0.103
npm
nad-home
999.0.104
npm
native-component-list
0.0.1-security
npm
native-component-list
1.0.0
npm
native-component-list
99.0.0
npm
native-component-list
99.1.0
npm
non-modular-buildable
0.0.1-security
npm
non-modular-buildable
10.0.0
npm
openhands-frontend
999.0.104
npm
path-to-regexp-updated
99.99.1
npm
remark-mdx2.3
0.0.1-security
npm
remark-mdx2.3
9.0.0
npm
remark-stringify10
0.0.1-security
npm
remark-stringify10
10.0.2
npm
sharp32
99.99.1
npm
sharp32
99.99.2
npm
sheinx
999.0.101
npm
sheinx
999.0.102
npm
sheinx
999.0.103
1-50 of 65
sonatype-2025-007443 | Components Impacted | Sonatype Guide | Sonatype Guide