Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2025-007465
sonatype-2025-007465
Malicious Packages - Mon Dec 08 2025 [Info Stealer]
Published Dec 8, 2025
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192350.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192361.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192366.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192368.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192371.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192422.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192465.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192466.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192544.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192545.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192546.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192547.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192548.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192549.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192550.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192551.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192552.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192556.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192558.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192561.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192567.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192586.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192590.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192592.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2025-192593.json
CVSS Score
Medium
5.3
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
@xyuxu/i18never
0.0.1-security
npm
@xyuxu/i18never
999.0.104
npm
@xyuxu/i18never
999.0.105
npm
@xyuxu/i18never
999.0.106
npm
aboba-docker-check
0.35.2
npm
adk-cli
0.0.1-security
npm
adk-cli
0.1.0
npm
adk-cli
0.1.10
npm
adk-cli
0.1.11
npm
adk-cli
0.1.13
npm
adk-cli
0.1.14
npm
adk-cli
0.1.15
npm
adk-cli
0.1.17
npm
adk-cli
0.1.2
npm
adk-cli
0.1.3
npm
adk-cli
0.1.4
npm
adk-cli
0.1.5
npm
adk-cli
0.1.6
npm
adk-cli
0.1.7
npm
adk-cli
0.1.8
npm
adk-cli
0.1.9
npm
afruitmaliciousxmlparser
0.0.1-security
npm
afruitmaliciousxmlparser
0.30.1
npm
bfruitmaliciousxmlparser
0.0.1-security
npm
bfruitmaliciousxmlparser
0.30.1
npm
camscanner-seo
999.0.0
npm
cfruitmaliciousxmlparser
0.0.1-security
npm
cfruitmaliciousxmlparser
0.30.1
npm
cms_comp
999.0.0
npm
cms_comp
999.0.1
npm
cms_comp
999.0.9
npm
cms_comp_popup
999.0.0
npm
cms_comp_static
0.0.1-security
npm
cms_comp_static
999.0.0
npm
cos-js-sdk-v6
999.0.0
npm
cursorparserfruit
0.0.1-security
npm
cursorparserfruit
0.30.1
npm
datadog-checks-base
0.0.1-security
npm
datadog-checks-base
1.0.0
npm
datadog-checks-base
50.0.0
npm
ddxq_cms_tools
999.0.0
npm
dfruitmaliciousxmlparser
0.0.1-security
npm
dfruitmaliciousxmlparser
0.30.1
npm
dubbo-js-private-workspace
0.0.1-security
npm
dubbo-js-private-workspace
999.0.104
npm
efruitmaliciousxmlparser
0.0.1-security
npm
efruitmaliciousxmlparser
0.30.1
npm
eslint-config-zoo
0.0.1-security
npm
eslint-config-zoo
999.0.0
npm
example-vue2-micro
0.0.1-security
1-50 of 129
sonatype-2025-007465 | Components Impacted | Sonatype Guide | Sonatype Guide