Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-007460
sonatype-2025-007460
Malicious Packages - Sat Dec 06 2025 [Info Stealer]
Published Dec 8, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-191996.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192090.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192200.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192268.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192276.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192283.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192284.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192287.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192294.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192330.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192519.json
CVSS Score
Medium
5.3
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
elf-stats-bright-marshmallow-367
1.0.0
npm
elf-stats-candlelit-toy-571
999.0.0
npm
elf-stats-cranberry-pinecone-878
1.0.0
npm
elf-stats-cranberry-pinecone-878
1.0.1
npm
elf-stats-cranberry-pinecone-878
1.0.50
npm
elf-stats-cranberry-pinecone-878
2.0.0
npm
elf-stats-festive-sparkler-275
0.0.1-security
npm
elf-stats-festive-sparkler-275
1.0.1
npm
elf-stats-festive-sparkler-275
1.0.2
npm
elf-stats-festive-sparkler-275
1.0.3
npm
elf-stats-festive-sparkler-275
1.0.4
npm
elf-stats-festive-sparkler-275
2.0.0
npm
elf-stats-festive-sparkler-275
2.0.1
npm
elf-stats-festive-sparkler-275
2.0.2
npm
elf-stats-festive-sparkler-275
2.0.3
npm
elf-stats-midnight-drum-606
999.0.0
npm
elf-stats-northbound-cocoa-368
1.0.0
npm
elf-stats-northbound-cocoa-368
1.0.1
npm
elf-stats-northbound-cocoa-368
1.0.2
npm
elf-stats-northbound-cocoa-368
1.0.3
npm
elf-stats-snowdusted-stockpile-595
1.0.0
npm
elf-stats-snowy-northstar-860
1.0.0
npm
elf-stats-snowy-northstar-860
2.0.0
npm
elf-stats-snuggly-bow-478
0.0.1-security
npm
elf-stats-snuggly-bow-478
2.0.0
npm
elf-stats-sparkly-candy-805
1.0.0
npm
elf-stats-sparkly-candy-805
2.0.0
npm
elf-stats-sprucey-fireplace-355
1.0.0
npm
elf-stats-sprucey-fireplace-355
1.0.1
npm
elf-stats-sprucey-fireplace-355
1.0.2
npm
elf-stats-sprucey-fireplace-355
1.0.3
npm
elf-stats-sprucey-fireplace-355
1.0.4
npm
elf-stats-sprucey-fireplace-355
1.0.5
npm
elf-stats-sugarplum-cookiejar-661
1.0.0
npm
elf-stats-sugarplum-cookiejar-661
9.9.0
npm
elf-stats-twinkling-ribbon-344
1.1.0
npm
elf-stats-twinkling-ribbon-344
2.1.0
npm
elf-stats-twinkling-ribbon-344
2.1.1
npm
elf-stats-wintry-sled-578
999.0.0
1-39 of 39
sonatype-2025-007460 | Components Impacted | Sonatype Guide | Sonatype Guide