Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-007457
sonatype-2025-007457
Malicious Packages - Sat Dec 06 2025 [Credential Info Stealer]
Published Dec 8, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-191977.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192481.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192488.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192522.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192537.json
CVSS Score
High
7.1
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
elf-stats-caroling-sled-530
999.0.0
npm
elf-stats-caroling-sled-530
999.0.1
npm
elf-stats-caroling-sled-530
999.0.2
npm
elf-stats-caroling-sled-530
999.0.3
npm
elf-stats-cocoa-pinecone-118
1.0.0
npm
elf-stats-cocoa-pinecone-118
1.0.1
npm
elf-stats-peppermint-wishlist-307
1.0.0
npm
elf-stats-rooftop-stockpile-626
0.0.1-security
npm
elf-stats-rooftop-stockpile-626
99.0.0
npm
elf-stats-rooftop-stockpile-626
99.0.10
npm
elf-stats-rooftop-stockpile-626
99.0.11
npm
elf-stats-rooftop-stockpile-626
99.0.12
npm
elf-stats-rooftop-stockpile-626
99.0.13
npm
elf-stats-rooftop-stockpile-626
99.0.14
npm
elf-stats-rooftop-stockpile-626
99.0.1
npm
elf-stats-rooftop-stockpile-626
99.0.2
npm
elf-stats-rooftop-stockpile-626
99.0.3
npm
elf-stats-rooftop-stockpile-626
99.0.4
npm
elf-stats-rooftop-stockpile-626
99.0.5
npm
elf-stats-rooftop-stockpile-626
99.0.6
npm
elf-stats-rooftop-stockpile-626
99.0.7
npm
elf-stats-rooftop-stockpile-626
99.0.8
npm
elf-stats-rooftop-stockpile-626
99.0.9
npm
elf-stats-tinsel-cookiejar-315
1.0.0
1-24 of 24
sonatype-2025-007457 | Components Impacted | Sonatype Guide | Sonatype Guide