Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2026-000083
sonatype-2026-000083
Malicious Packages - Fri Jan 09 2026 [Dropper/Loader]
Published Jan 9, 2026
https://help.sonatype.com/en/sonatype-malware-data.html
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-203.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-204.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-205.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-206.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-207.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-214.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-215.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-220.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-223.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-224.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-225.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-227.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-228.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-229.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-232.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-234.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-407.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-418.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-426.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-427.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-430.json
https://osv-vulnerabilities.storage.googleapis.com/npm/MAL-2026-434.json
CVSS Score
High
8.7
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
analytics-browser
0.0.1-security
npm
analytics-browser
1.0.1
npm
auth-types
0.0.1-security
npm
auth-types
1.0.1
npm
auth-types
8.0.11
npm
babel-js
0.0.1-security
npm
babel-js
1.0.1
npm
body-parser-js
0.0.1-security
npm
body-parser-js
1.0.1
npm
framer-motion-js
0.0.1-security
npm
framer-motion-js
1.0.1
npm
immer-js
0.0.1-security
npm
immer-js
1.0.1
npm
inquirer-js
0.0.1-security
npm
inquirer-js
1.0.1
npm
jsdom-js
0.0.1-security
npm
jsdom-js
1.0.1
npm
llamaindex-js
0.0.1-security
npm
llamaindex-js
1.0.1
npm
luxon-js
0.0.1-security
npm
luxon-js
1.0.1
npm
milvus-js
0.0.1-security
npm
milvus-js
1.0.1
npm
nanoid-js
0.0.1-security
npm
nanoid-js
1.0.1
npm
pako-js
0.0.1-security
npm
pako-js
1.0.1
npm
qdrant-js
0.0.1-security
npm
qdrant-js
1.0.1
npm
react-hook-form-js
0.0.1-security
npm
react-hook-form-js
1.0.1
npm
replicate-js
0.0.1-security
npm
replicate-js
1.0.1
npm
rxjs-js
0.0.1-security
npm
rxjs-js
1.0.1
npm
storage-types
0.0.1-security
npm
storage-types
1.0.1
npm
storage-types
8.0.11
npm
terser-js
0.0.1-security
npm
terser-js
1.0.1
npm
weaviate-js
0.0.1-security
npm
weaviate-js
1.0.1
npm
xml2js-js
0.0.1-security
npm
xml2js-js
1.0.1
npm
yargs-js
0.0.1-security
npm
yargs-js
1.0.1
1-46 of 46
sonatype-2026-000083 | Components Impacted | Sonatype Guide | Sonatype Guide