Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-007445
sonatype-2025-007445
Malicious Packages - Sat Dec 06 2025 [RCE] [Reverse Shell]
Published Dec 6, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192303.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192326.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192329.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192370.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192470.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192473.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192482.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192489.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192492.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192494.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192497.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192503.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192507.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192511.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192526.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192527.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192529.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192535.json
CVSS Score
High
8.7
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
elf-stats-aurora-sleigh-694
0.0.1-security
npm
elf-stats-aurora-sleigh-694
1.0.0
npm
elf-stats-candlelit-hollyberry-248
1.0.0
npm
elf-stats-candlelit-train-228
2.0.0
npm
elf-stats-caroling-sparkler-130
2.0.0
npm
elf-stats-cosy-chimney-268
2.0.0
npm
elf-stats-cosy-toy-308
1.0.0
npm
elf-stats-cranberry-saddlebag-402
2.0.0
npm
elf-stats-ember-stocking-807
0.0.1-security
npm
elf-stats-ember-stocking-807
1.0.0
npm
elf-stats-ember-stocking-807
1.0.1
npm
elf-stats-ember-stocking-807
1.0.2
npm
elf-stats-ember-stocking-807
1.0.3
npm
elf-stats-ember-stocking-807
1.0.4
npm
elf-stats-ember-stocking-807
1.0.5
npm
elf-stats-evergreen-workbench-842
2.0.0
npm
elf-stats-fuzzy-workbench-102
2.0.0
npm
elf-stats-ginger-wreath-646
1.0.0
npm
elf-stats-holly-stocking-294
0.0.1-security
npm
elf-stats-holly-stocking-294
1.0.0
npm
elf-stats-jubilant-star-283
2.0.0
npm
elf-stats-lanternlit-cocoa-651
2.0.0
npm
elf-stats-sleighing-drum-467
1.0.0
npm
elf-stats-snowdusted-bell-846
2.0.0
npm
elf-stats-snowdusted-cookiejar-250
2.0.0
npm
elf-stats-snowdusted-saddlebag-127
2.0.0
npm
elf-stats-storybook-snowman-513
2.0.0
npm
elf-stats-sugarplum-toolkit-176
1.0.0
npm
elf-stats-whimsical-pantry-974
1.0.0
1-29 of 29
sonatype-2025-007445 | Components Impacted | Sonatype Guide | Sonatype Guide